[Debian-ha-maintainers] Bug#974563: corosync unable to communicate with pacemaker 1.1.16-1+deb9u1 which contains the fix for CVE-2020-25654

Markus Koschany apo at debian.org
Fri Nov 13 20:12:30 GMT 2020


Am Donnerstag, den 12.11.2020, 15:50 -0300 schrieb Alejandro Taboada:
> Hi !
> 
> Just tested v1.1 and the issue persists. The problem is quiet local
> connection when using with corosync

Hello,

I believe I have found and fixed the problem. The refactored code in lrmd.c
caused the regression. Since this commit is not strictly needed to fix CVE-
2020-25654, I have reverted the changes. On my local setup I don't see any
error messages but I would appreciate a final test from you before I upload to
rule out other possible issues. New source and binary packages are available at

https://people.debian.org/~apo/lts/pacemaker/

Regards,

Markus
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 963 bytes
Desc: This is a digitally signed message part
URL: <http://alioth-lists.debian.net/pipermail/debian-ha-maintainers/attachments/20201113/cde97f3b/attachment.sig>


More information about the Debian-ha-maintainers mailing list