Security Advisory

CVE-2015-5189

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-09-03 14:00:00
Last updated 2024-08-06 06:41:08
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Race condition in pcsd in PCS 0.9.139 and earlier uses a global variable to validate usernames, which allows remote authenticated users to gain privileges by sending a command that is checked for security after another user is authenticated.