Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:1905

Опубликовано: 06 фев. 2026
Источник: rocky
Оценка: Important

Описание

Important: fence-agents security update

The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.

Security Fix(es):

  • pyasn1: pyasn1: Denial of Service due to memory exhaustion from malformed RELATIVE-OID (CVE-2026-23490)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
fence-virtd-multicastx86_6413.el10_1.2fence-virtd-multicast-4.16.0-13.el10_1.2.x86_64.rpm
fence-agents-ipdunoarch13.el10_1.2fence-agents-ipdu-4.16.0-13.el10_1.2.noarch.rpm
fence-agents-ilo-sshnoarch13.el10_1.2fence-agents-ilo-ssh-4.16.0-13.el10_1.2.noarch.rpm
fence-agents-intelmodularnoarch13.el10_1.2fence-agents-intelmodular-4.16.0-13.el10_1.2.noarch.rpm
fence-agents-cisco-ucsnoarch13.el10_1.2fence-agents-cisco-ucs-4.16.0-13.el10_1.2.noarch.rpm
fence-agents-heuristics-pingnoarch13.el10_1.2fence-agents-heuristics-ping-4.16.0-13.el10_1.2.noarch.rpm
fence-agents-redfishx86_6413.el10_1.2fence-agents-redfish-4.16.0-13.el10_1.2.x86_64.rpm
fence-agents-vmware-soapnoarch13.el10_1.2fence-agents-vmware-soap-4.16.0-13.el10_1.2.noarch.rpm
fence-agents-hpbladenoarch13.el10_1.2fence-agents-hpblade-4.16.0-13.el10_1.2.noarch.rpm
fence-agents-virshnoarch13.el10_1.2fence-agents-virsh-4.16.0-13.el10_1.2.noarch.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7.5
ubuntu
2 месяца назад

pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This vulnerability is fixed in 0.6.2.

CVSS3: 7.5
redhat
2 месяца назад

pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This vulnerability is fixed in 0.6.2.

CVSS3: 7.5
nvd
2 месяца назад

pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This vulnerability is fixed in 0.6.2.

msrc
2 месяца назад

pyasn1 has a DoS vulnerability in decoder

CVSS3: 7.5
debian
2 месяца назад

pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial ...