Search CVE reports


Toggle filters

1 – 8 of 8 results


CVE-2008-6560

Low priority

Some fixes available 2 of 3

Buffer overflow in CMAN - The Cluster Manager before 2.03.09-1 on Fedora 9 and Red Hat Enterprise Linux (RHEL) 5 allows attackers to cause a denial of service (CPU consumption and memory corruption) via a cluster.conf file with...

2 affected packages

redhat-cluster, redhat-cluster-suite

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
redhat-cluster
redhat-cluster-suite
Show less packages

CVE-2008-6552

Low priority

Some fixes available 3 of 4

Red Hat Cluster Project 2.x allows local users to modify or overwrite arbitrary files via symlink attacks on files in /tmp, involving unspecified components in Resource Group Manager (aka rgmanager) before 2.03.09-1, gfs2-utils...

2 affected packages

redhat-cluster, redhat-cluster-suite

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
redhat-cluster
redhat-cluster-suite
Show less packages

CVE-2008-4580

Medium priority

Some fixes available 1 of 2

fence_manual, as used in fence 2.02.00-r1 and possibly cman, allows local users to modify arbitrary files via a symlink attack on the fence_manual.fifo temporary file.

2 affected packages

redhat-cluster, redhat-cluster-suite

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
redhat-cluster
redhat-cluster-suite
Show less packages

CVE-2008-4579

Medium priority

Some fixes available 2 of 4

The (1) fence_apc and (2) fence_apc_snmp programs, as used in (a) fence 2.02.00-r1 and possibly (b) cman, when running in verbose mode, allows local users to append to arbitrary files via a symlink attack on the apclog temporary file.

2 affected packages

redhat-cluster, redhat-cluster-suite

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
redhat-cluster
redhat-cluster-suite
Show less packages

CVE-2008-4192

Low priority
Fixed

The pserver_shutdown function in fence_egenera in cman 2.20080629 and 2.20080801 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/eglog temporary file.

2 affected packages

redhat-cluster, redhat-cluster-suite

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
redhat-cluster
redhat-cluster-suite
Show less packages

CVE-2007-3380

Unknown priority
Fixed

The Distributed Lock Manager (DLM) in the cluster manager for Linux kernel 2.6.15 allows remote attackers to cause a denial of service (loss of lock services) by connecting to the DLM port, which probably prevents other processes...

3 affected packages

linux-source-2.6.15, linux-source-2.6.20, redhat-cluster-suite

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux-source-2.6.15
linux-source-2.6.20
redhat-cluster-suite
Show less packages

CVE-2007-3373

Unknown priority
Fixed

daemon.c in cman (redhat-cluster-suite) before 20070622 does not clear a buffer for reading requests, which might allow local users to obtain sensitive information from previous requests.

1 affected package

redhat-cluster-suite

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
redhat-cluster-suite
Show less packages

CVE-2007-3374

Medium priority
Fixed

Buffer overflow in cluster/cman/daemon/daemon.c in cman (redhat-cluster-suite) before 20070622 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via long client messages.

1 affected package

redhat-cluster-suite

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
redhat-cluster-suite
Show less packages