Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Ubuntu 20.04: 2020-4321 High: Network Configuration Flaw

fedora
Calendar Grey June 4, 2015
Scroller Fedora
Urgent security patch for computers using Fedora 22 targeting session authentication vulnerabilities. Vital for maintaining system security.
Fix for CVE-2015-1848, CVE-2015-3983 (sessions not signed)

Summary

pcs is a corosync and pacemaker configuration tool. It permits users to

easily view, modify and created pacemaker based clusters.

Update Information:

Fix for CVE-2015-1848, CVE-2015-3983 (sessions not signed)

Change Log

* Fri May 22 2015 Tomas Jelinek - 0.9.139-4 - Fix for CVE-2015-1848, CVE-2015-3983 (sessions not signed)

References


[ 1 ] Bug #1208294 - CVE-2015-1848 CVE-2015-3983 pcs: improper web session variable signing https://bugzilla.redhat.com/show_bug.cgi?id=1208294

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update pcs' at the command line. For more information, refer to "Managing Software with yum", available at .

Name: pcs
Product: Fedora 22
Version: 0.9.139
Release: 4.fc22
Summary: Pacemaker Configuration System

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.