[Debian-ha-maintainers] Bug#974563: corosync unable to communicate with pacemaker 1.1.16-1+deb9u1 which contains the fix for CVE-2020-25654

Alejandro Taboada alejandro.taboada at altipeak.com
Sat Nov 14 02:13:56 GMT 2020


Hello Markus,

It doesn’t work. The output log is quite different. I throws a timeout and just at the end the “unprivileged client crmd”.
See attached log.

Bests,
Alejandro



> On 13 Nov 2020, at 17:12, Markus Koschany <apo at debian.org> wrote:
> 
> Am Donnerstag, den 12.11.2020, 15:50 -0300 schrieb Alejandro Taboada:
>> Hi !
>> 
>> Just tested v1.1 and the issue persists. The problem is quiet local
>> connection when using with corosync
> 
> Hello,
> 
> I believe I have found and fixed the problem. The refactored code in lrmd.c
> caused the regression. Since this commit is not strictly needed to fix CVE-
> 2020-25654, I have reverted the changes. On my local setup I don't see any
> error messages but I would appreciate a final test from you before I upload to
> rule out other possible issues. New source and binary packages are available at
> 
> https://people.debian.org/~apo/lts/pacemaker/
> 
> Regards,
> 
> Markus

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-ha-maintainers/attachments/20201113/b79f41d7/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: Screen Shot 2020-11-13 at 23.11.20.png
Type: image/png
Size: 2796258 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/debian-ha-maintainers/attachments/20201113/b79f41d7/attachment-0001.png>


More information about the Debian-ha-maintainers mailing list