[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-84828/pcs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Sep 15 04:42:15 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
fe47ec93 by Salvatore Bonaccorso at 2026-09-15T05:42:07+02:00
Update status for CVE-2026-84828/pcs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -4050,11 +4050,10 @@ CVE-2026-85228 (An integer overflow in the tensor buffer validation component in
CVE-2026-85217 (A maliciously crafted add-in, when installed and executed in Autodesk ...)
NOT-FOR-US: Autodesk
CVE-2026-84828 (A flaw was found in PCS (Pacemaker Configuration System). A local atta ...)
- - pcs <unfixed> (bug #1147515)
+ - pcs 0.12.3.1-1 (bug #1147515)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2527320
NOTE: Introduced with: https://github.com/ClusterLabs/pcs/commit/9178b78d11baa70e700a5c0d9fc1c17f27d452fa (0.10.8)
- NOTE: Fixed by: https://github.com/ClusterLabs/pcs/commit/b41eaf3c6e2ecfc575c42442fb02b8ef05b4dd6a
- TODO: update once upstream commit public/accessible, cf. Red Hat bug
+ NOTE: Fixed by: https://github.com/ClusterLabs/pcs/commit/38415e96b8a2f470beddd1dd0878e3f6be0fc429 (v0.12.3.1)
CVE-2026-84821 (Unauthenticated Broken Access Control in WP Fast Total Search <= 1.82. ...)
NOT-FOR-US: WordPress plugin or theme
CVE-2026-84819 (Unauthenticated Cross Site Scripting (XSS) in WPAdverts <= 2.3.3 versi ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fe47ec93884adc803e42edde3edadba124f04132
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fe47ec93884adc803e42edde3edadba124f04132
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260915/ad3c9731/attachment.htm>
More information about the debian-security-tracker-commits
mailing list