CVE-2023-2319
Published May 17, 2023It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux 9.2 failed to include the fix for the Webpack issue CVE-202…
Vendor/product archive
6 CVEs tagged to clusterlabs / pcs — 1 Critical, 4 High, 1 Medium, 0 Low, 0 Unrated.
It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux 9.2 failed to include the fix for the Webpack issue CVE-202…
A vulnerability was found in the PCS project. This issue occurs due to incorrect permissions on a Unix socket used for internal communication between PCS daemons. A privilege esca…
A flaw was found in the Pacemaker configuration tool (pcs). The pcs daemon was allowing expired accounts, and accounts with expired passwords to login when using PAM authenticatio…
ClusterLabs pcs before version 0.9.157 is vulnerable to a cross-site scripting vulnerability due to improper validation of Node name field when creating new cluster or adding exis…
Session fixation vulnerability in pcsd in pcs before 0.9.157.
Cross-site request forgery (CSRF) vulnerability in pcsd web UI in pcs before 0.9.149.