INFSA-2025:14999: resource-agents security update
Information about definition
Identificator: INFSA-2025:14999
Type: security
Release date: 2025-09-11 14:30:02 UTC
Information about package
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.
Vulnerabilities description
- CVE-2024-47081
A flaw was found in the Requests HTTP library. This vulnerability allows leakage of .netrc credentials to third parties via maliciously crafted URLs that exploit a URL parsing issue.
Severity level
CVE | Score CVSS 2.0 | Score CVSS 3.x | Score CVSS 4.0 |
---|---|---|---|
NIST — CVE-2024-47081
|
no information | 5.3 | no information |
Updated packages