Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

David Vossel

Researcher fromRed Hat
#51150of 53,632
4.3Total CVSS
Vulnerabilities · 1
PT-2013-2214
4.3
2013-11-20
Clusterlabs · Pacemaker · CVE-2013-0281
**Name of the Vulnerable Software and Affected Versions** Pacemaker version 1.1.10 **Description** The issue allows remote attackers to cause a denial of service, specifically connection blocking, when remote Cluster Information Base (CIB) configuration or resource management is enabled. This occurs because the duration of connections to the blocking sockets is not limited. **Recommendations** For Pacemaker version 1.1.10, consider disabling remote CIB configuration or resource management as a temporary workaround to minimize the risk of exploitation. Restrict access to the blocking sockets to prevent connection blocking.