Pacemaker prior to 1.1.13 does not properly evaluate added nodes, which allows remote read-only users to gain privileges via an acl command.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
redhat enterprise linux high availability 6.0 |
||
redhat enterprise linux resilient storage 7.0 |
||
redhat enterprise linux resilient storage 6.0 |
||
redhat enterprise linux high availability 7.0 |
||
clusterlabs pacemaker |