Search CVE reports
1 – 8 of 8 results
CVE-2008-6560
Low prioritySome fixes available 2 of 3
Buffer overflow in CMAN - The Cluster Manager before 2.03.09-1 on Fedora 9 and Red Hat Enterprise Linux (RHEL) 5 allows attackers to cause a denial of service (CPU consumption and memory corruption) via a cluster.conf file with...
2 affected packages
redhat-cluster, redhat-cluster-suite
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
redhat-cluster | — | — | — | — | — |
redhat-cluster-suite | — | — | — | — | — |
CVE-2008-6552
Low prioritySome fixes available 3 of 4
Red Hat Cluster Project 2.x allows local users to modify or overwrite arbitrary files via symlink attacks on files in /tmp, involving unspecified components in Resource Group Manager (aka rgmanager) before 2.03.09-1, gfs2-utils...
2 affected packages
redhat-cluster, redhat-cluster-suite
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
redhat-cluster | — | — | — | — | — |
redhat-cluster-suite | — | — | — | — | — |
CVE-2008-4580
Medium prioritySome fixes available 1 of 2
fence_manual, as used in fence 2.02.00-r1 and possibly cman, allows local users to modify arbitrary files via a symlink attack on the fence_manual.fifo temporary file.
2 affected packages
redhat-cluster, redhat-cluster-suite
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
redhat-cluster | — | — | — | — | — |
redhat-cluster-suite | — | — | — | — | — |
CVE-2008-4579
Medium prioritySome fixes available 2 of 4
The (1) fence_apc and (2) fence_apc_snmp programs, as used in (a) fence 2.02.00-r1 and possibly (b) cman, when running in verbose mode, allows local users to append to arbitrary files via a symlink attack on the apclog temporary file.
2 affected packages
redhat-cluster, redhat-cluster-suite
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
redhat-cluster | — | — | — | — | — |
redhat-cluster-suite | — | — | — | — | — |
CVE-2008-4192
Low priorityThe pserver_shutdown function in fence_egenera in cman 2.20080629 and 2.20080801 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/eglog temporary file.
2 affected packages
redhat-cluster, redhat-cluster-suite
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
redhat-cluster | — | — | — | — | — |
redhat-cluster-suite | — | — | — | — | — |
CVE-2007-3380
Unknown priorityThe Distributed Lock Manager (DLM) in the cluster manager for Linux kernel 2.6.15 allows remote attackers to cause a denial of service (loss of lock services) by connecting to the DLM port, which probably prevents other processes...
3 affected packages
linux-source-2.6.15, linux-source-2.6.20, redhat-cluster-suite
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux-source-2.6.15 | — | — | — | — | — |
linux-source-2.6.20 | — | — | — | — | — |
redhat-cluster-suite | — | — | — | — | — |
CVE-2007-3373
Unknown prioritydaemon.c in cman (redhat-cluster-suite) before 20070622 does not clear a buffer for reading requests, which might allow local users to obtain sensitive information from previous requests.
1 affected packages
redhat-cluster-suite
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
redhat-cluster-suite | — | — | — | — | — |
CVE-2007-3374
Medium priorityBuffer overflow in cluster/cman/daemon/daemon.c in cman (redhat-cluster-suite) before 20070622 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via long client messages.
1 affected packages
redhat-cluster-suite
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
redhat-cluster-suite | — | — | — | — | — |