PT-2019-16754 · Red Hat+4 · Pacemaker+5

Published

2019-04-17

·

Updated

2023-09-29

·

CVE-2019-3885

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions pacemaker versions up to and including 2.0.1
Description A use-after-free flaw was found in pacemaker, which could result in certain sensitive information to be leaked via the system logs.
Recommendations For versions up to and including 2.0.1, update to a version later than 2.0.1 to resolve the issue.

Fix

Use After Free

Weakness Enumeration

Related Identifiers

ALT-PU-2019-2068
ALT-PU-2019-2069
CESA-2019_1279
CVE-2019-3885
MGASA-2019-0394
OPENSUSE-SU-2019:1400-1
OPENSUSE-SU-2019_1400-1
OPENSUSE-SU-2024:11138-1
RHSA-2019:1278
RHSA-2019:1279
RHSA-2019_1278
RHSA-2019_1279
SUSE-SU-2019:1047-1
SUSE-SU-2019:1209-1
USN-3952-1

Affected Products

Alt Linux
Centos
Red Hat
Suse
Ubuntu
Pacemaker