pacemaker-2.0.4-6.el8.1
エラータID: AXSA:2021-1439:03
リリース日:
2021/02/09 Tuesday - 12:14
題名:
pacemaker-2.0.4-6.el8.1
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- pacemaker には、クラスターにローカルのアカウントを持ち、
haclient グループに属する攻撃者が、設定を潜り抜けることができたとき、
ACL によって保護される様々なデーモンに IPC 通信を直接使用し、
ACL をバイパスして特定のタスクを実行できる脆弱性があります。
(CVE-2020-25654)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2020-25654
An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the configuration.
An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the configuration.
追加情報:
N/A
ダウンロード:
SRPMS
- pacemaker-2.0.4-6.el8.1.src.rpm
MD5: 5859aa83865ebe82e180f4286ab17de1
SHA-256: b4c063a6574f704f36e0948bccb912edff2bff52f55d9188a8dbe2b4f264ade3
Size: 5.07 MB
Asianux Server 8 for x86_64
- pacemaker-2.0.4-6.el8.1.x86_64.rpm
MD5: 25ec6d5e0ef694894012ecb357a0a900
SHA-256: 46a6a9d9d4ef4233cb11949197d640bbd610571d935d6107184fae8d20361669
Size: 436.35 kB - pacemaker-cli-2.0.4-6.el8.1.x86_64.rpm
MD5: ed3060d335d5acf8acf7200c1af1d088
SHA-256: ab1459c7431d6d1b11e43994a4355a7310f03e60beac92f5a4ab5a1dce39dd9f
Size: 325.27 kB - pacemaker-cluster-libs-2.0.4-6.el8.1.x86_64.rpm
MD5: 79832c933ce6c5f8864d25ac0182c6b9
SHA-256: 4196a6d50aa08f8f82a99c32648e8587c9fc8190bbaca63fe2b9092e6a193e3f
Size: 126.65 kB - pacemaker-cts-2.0.4-6.el8.1.noarch.rpm
MD5: 50b518e90ac9b0c374dbcc408ad79658
SHA-256: f00bcee540bf16a48faf695d1f6dcb185134b5203d958fa8544c4272f42360b1
Size: 2.06 MB - pacemaker-doc-2.0.4-6.el8.1.noarch.rpm
MD5: 0b972c48d54d192b7aa7425d90e0e576
SHA-256: 16481ee54ba48ed0527b4fea734a9177106adebac2957beadd2bcc76ff1f67ad
Size: 48.40 kB - pacemaker-libs-2.0.4-6.el8.1.x86_64.rpm
MD5: 55fd9933084f709d1b4ee588a112772e
SHA-256: 763686443fc0fcec8a4ed57eee460945347bc0a0343c0bef6d364c5145e9b12f
Size: 687.95 kB - pacemaker-libs-devel-2.0.4-6.el8.1.x86_64.rpm
MD5: dd68553f4b5c8c421172e8241f468482
SHA-256: 3f8c3beaa6fe4cc16fcec79fc18c109a8a5a002249089129e2677255b73a23ed
Size: 144.07 kB - pacemaker-nagios-plugins-metadata-2.0.4-6.el8.1.noarch.rpm
MD5: 132a82e5585c6be29a657d7410420546
SHA-256: 01f398768f27ac917c557a9e28f0b620fbaee71a94634369d16ade03c6648e9a
Size: 39.38 kB - pacemaker-remote-2.0.4-6.el8.1.x86_64.rpm
MD5: 9ce8a25c40f668615914b2688deb1481
SHA-256: 2e111fa847b528810eb96978e02dcaa6f85715066203430ff5e059c179f8cb40
Size: 122.65 kB - pacemaker-schemas-2.0.4-6.el8.1.noarch.rpm
MD5: e4ad8bacaa0634c4fbcbca4aa2fc4a98
SHA-256: 0e7eded96c0b65321e1a1ade2bcb06a55d3846151a9c1ee544fb82b4f96e5395
Size: 68.30 kB - pacemaker-cluster-libs-2.0.4-6.el8.1.i686.rpm
MD5: d6171efbad202fbd8550133a6d05deb7
SHA-256: 754f1be097f5be6650dfc9dbc6fe3d3288b984755cdec8534fb1bbc830270973
Size: 128.79 kB - pacemaker-libs-2.0.4-6.el8.1.i686.rpm
MD5: 19ee5ab544ce7ac2b6f48ac2a8d9e606
SHA-256: b90f89e02e745fef0af99e61d3710d790e60439be953e24ed527abb4b6d77e81
Size: 707.45 kB - pacemaker-libs-devel-2.0.4-6.el8.1.i686.rpm
MD5: f92681b2dc9c7f25ee151ca22979c2eb
SHA-256: e796ba6cc5174b931e2e01486610413054ddc50b21a8105d7ff93497a676a238
Size: 144.02 kB - pacemaker-remote-2.0.4-6.el8.1.i686.rpm
MD5: 05b9a5f0a4ffa14bdcfa6910944f52fe
SHA-256: c506207004273009399eb1f2591492b487a0393421f9bd079484cdb2e2e89da1
Size: 124.66 kB