Описание
ELSA-2026-8093: pcs security update (MODERATE)
[0.10.18-2.0.1.el8_10.9]
- Replaced HAM-logo
[0.10.18]
- Debrand PCS
[0.10.18-2.el8_10.9]
- Fixed CVE-2026-31958 by patching bundled Tornado Resolves: RHEL-155293
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
pcs
0.10.18-2.0.1.el8_10.9
pcs-snmp
0.10.18-2.0.1.el8_10.9
Oracle Linux x86_64
pcs
0.10.18-2.0.1.el8_10.9
pcs-snmp
0.10.18-2.0.1.el8_10.9
Связанные CVE
Связанные уязвимости
Tornado is a Python web framework and asynchronous networking library. In versions of Tornado prior to 6.5.5, the only limit on the number of parts in multipart/form-data is the max_body_size setting (default 100MB). Since parsing occurs synchronously on the main thread, this creates the possibility of denial-of-service due to the cost of parsing very large multipart bodies with many parts. This vulnerability is fixed in 6.5.5.
Tornado is a Python web framework and asynchronous networking library. In versions of Tornado prior to 6.5.5, the only limit on the number of parts in multipart/form-data is the max_body_size setting (default 100MB). Since parsing occurs synchronously on the main thread, this creates the possibility of denial-of-service due to the cost of parsing very large multipart bodies with many parts. This vulnerability is fixed in 6.5.5.
Tornado is a Python web framework and asynchronous networking library. In versions of Tornado prior to 6.5.5, the only limit on the number of parts in multipart/form-data is the max_body_size setting (default 100MB). Since parsing occurs synchronously on the main thread, this creates the possibility of denial-of-service due to the cost of parsing very large multipart bodies with many parts. This vulnerability is fixed in 6.5.5.
Tornado is a Python web framework and asynchronous networking library. ...