Pacemaker before 1.1.15, when using pacemaker remote, might allow remote attackers to cause a denial of service (node disconnection) via an unauthenticated connection.
| Software | From | Fixed in |
|---|---|---|
| clusterlabs / pacemaker | - | 1.1.14.x |
| suse / linux_enterprise_software_development_kit | 12-sp2 | 12-sp2.x |
| opensuse_project / leap | 42.1 | 42.1.x |
| suse / linux_enterprise_high_availability | 12-sp2 | 12-sp2.x |
| opensuse / leap | 42.2 | 42.2.x |
| redhat / enterprise_linux_resilient_storage | 7.0 | 7.0.x |
| redhat / enterprise_linux_high_availability | 7.0 | 7.0.x |