Beveiligingsadvies

CVE-2026-10649

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-06-16 15:57:38
Laatst bijgewerkt 2026-08-21 12:12:59
Toegewezen door redhat
CVSS-score 8.6
Status PUBLISHED

Beschrijving

A flaw was found in Pacemaker. An unauthenticated remote attacker can exploit an integer overflow vulnerability in the remote message decompression process. By sending a specially crafted compressed remote message before authentication, an attacker can cause memory corruption, leading to a denial of service (DoS) in the CIB remote listener. This can result in the affected service crashing.