[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-84828/pcs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Sep 15 04:42:15 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fe47ec93 by Salvatore Bonaccorso at 2026-09-15T05:42:07+02:00
Update status for CVE-2026-84828/pcs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4050,11 +4050,10 @@ CVE-2026-85228 (An integer overflow in the tensor buffer validation component in
 CVE-2026-85217 (A maliciously crafted add-in, when installed and executed in Autodesk  ...)
 	NOT-FOR-US: Autodesk
 CVE-2026-84828 (A flaw was found in PCS (Pacemaker Configuration System). A local atta ...)
-	- pcs <unfixed> (bug #1147515)
+	- pcs 0.12.3.1-1 (bug #1147515)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2527320
 	NOTE: Introduced with: https://github.com/ClusterLabs/pcs/commit/9178b78d11baa70e700a5c0d9fc1c17f27d452fa (0.10.8)
-	NOTE: Fixed by: https://github.com/ClusterLabs/pcs/commit/b41eaf3c6e2ecfc575c42442fb02b8ef05b4dd6a
-	TODO: update once upstream commit public/accessible, cf. Red Hat bug
+	NOTE: Fixed by: https://github.com/ClusterLabs/pcs/commit/38415e96b8a2f470beddd1dd0878e3f6be0fc429 (v0.12.3.1)
 CVE-2026-84821 (Unauthenticated Broken Access Control in WP Fast Total Search <= 1.82. ...)
 	NOT-FOR-US: WordPress plugin or theme
 CVE-2026-84819 (Unauthenticated Cross Site Scripting (XSS) in WPAdverts <= 2.3.3 versi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fe47ec93884adc803e42edde3edadba124f04132

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fe47ec93884adc803e42edde3edadba124f04132
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260915/ad3c9731/attachment.htm>


More information about the debian-security-tracker-commits mailing list