Pacemaker 1.1.10, when remote Cluster Information Base (CIB) configuration or resource management is enabled, does not limit the duration of connections to the blocking sockets, which allows remote attackers to cause a denial of service (connection blocking).
References
Configurations
History
21 Nov 2024, 01:47
Type | Values Removed | Values Added |
---|---|---|
References | () http://rhn.redhat.com/errata/RHSA-2013-1635.html - Vendor Advisory | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=891922 - | |
References | () https://github.com/ClusterLabs/pacemaker/commit/564f7cc2a51dcd2f28ab12a13394f31be5aa3c93 - Exploit, Patch |
Information
Published : 2013-11-23 11:55
Updated : 2024-11-21 01:47
NVD link : CVE-2013-0281
Mitre link : CVE-2013-0281
CVE.ORG link : CVE-2013-0281
JSON object : View
Products Affected
clusterlabs
- pacemaker
redhat
- enterprise_linux
CWE
CWE-399
Resource Management Errors