Security Advisory

CVE-2018-16877

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-04-18 00:00:00
Last updated 2024-08-05 10:32:54
Assigner redhat
CVSS score 8.8
State PUBLISHED

Description

A flaw was found in the way pacemaker's client-server authentication was implemented in versions up to and including 2.0.0. A local attacker could use this flaw, and combine it with other IPC weaknesses, to achieve local privilege escalation.