USN-3462-1
Dashboard / Vulnerabilities / USN-3462-1
USN-3462-1
Summary: pacemaker vulnerabilities
Details: Jan Pokorný and Alain Moulle discovered that Pacemaker incorrectly handled the IPC interface. A local attacker could possibly use this issue to execute arbitrary code with root privileges. (CVE-2016-7035) Alain Moulle discovered that Pacemaker incorrectly handled authentication. A remote attacker could possibly use this issue to shut down connections, leading to a denial of service. This issue only affected Ubuntu 16.04 LTS. (CVE-2016-7797)
References: https://ubuntu.com/security/notices/USN-3462-1, https://ubuntu.com/security/CVE-2016-7035, https://ubuntu.com/security/CVE-2016-7797
Affected packages
Package
Name: pacemaker
Purl: pkg:deb/ubuntu/[email protected]+git20130802-1ubuntu2.4?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
