4.3
CVSSv2

CVE-2013-0281

Published: 23/11/2013 Updated: 22/04/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Pacemaker 1.1.10, when remote Cluster Information Base (CIB) configuration or resource management is enabled, does not limit the duration of connections to the blocking sockets, which allows remote malicious users to cause a denial of service (connection blocking).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat enterprise linux 6.0

clusterlabs pacemaker 1.1.10

Vendor Advisories

Synopsis Low: pacemaker security, bug fix, and enhancement update Type/Severity Security Advisory: Low Topic Updated pacemaker packages that fix one security issue, several bugs, andadd various enhancements are now available for Red Hat Enterprise Linux 6The Red Hat Security Response Team has rated this up ...
Debian Bug report logs - #700923 pacemaker: CVE-2013-0281 Package: pacemaker; Maintainer for pacemaker is Debian HA Maintainers <debian-ha-maintainers@listsaliothdebianorg>; Source for pacemaker is src:pacemaker (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Tue, 19 Feb 2013 11:39:02 ...