Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 43 pcs Important Arbitrary Code Execution Fix 2026-c0f7d885ee

fedora
Calendar Grey June 9, 2026
Dist Fedora Esm H88
Enhance your Fedora 43 pcs setup by applying important updates and fixes to avoid security risks.
Updated standalone web UI and HA Cluster Management Cockpit application to pcs- web-ui 0.1.24.3 (see CHANGELOG_WUI.md) Fixed a crash when running pcs resource|stonith list Fixed or...

Summary

pcs is a configuration tool for Corosync and Pacemaker. It permits users to

easily view, modify and create high availability clusters based on Pacemaker.

This package contains the pcs command-line utility and its server pcsd.

Update Information:

Updated standalone web UI and HA Cluster Management Cockpit application to pcs- web-ui 0.1.24.3 (see CHANGELOG_WUI.md) Fixed a crash when running pcs resource|stonith list Fixed order of resources in sets when listing configuration of constraints

Change Log

* Fri May 15 2026 Michal Pospíšil - 0.12.2-2 - Updated standalone web UI and HA Cluster Management Cockpit application to pcs-web-ui 0.1.24.3 (see CHANGELOG_WUI.md) Resolves: rhbz#2454042 - Fixed a crash when running pcs resource|stonith list Resolves: rhbz#2458608 - Fixed order of resources in sets when listing configuration of constraints Resolves: rhbz#2461143

References


[ 1 ] Bug #2454042 - CVE-2026-4800 pcs: lodash: Arbitrary code execution via untrusted input in template imports [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2454042 [ 2 ] Bug #2458608 - pcs resource list produces traceback https://bugzilla.redhat.com/show_bug.cgi?id=2458608 [ 3 ] Bug #2461143 - pcs constraint in default text mode orders resources alphabetically https://bugzilla.redhat.com/show_bug.cgi?id=2461143

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-c0f7d885ee' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: pcs
Product: Fedora 43
Version: 0.12.2
Release: 2.fc43
Summary: Pacemaker/Corosync Configuration System

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here