-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3108-1 debian-...@lists.debian.org https://www.debian.org/lts/security/ Valentin Vidic September 14, 2022 https://wiki.debian.org/LTS - -------------------------------------------------------------------------
Package : pcs Version : 0.10.1-2+deb10u1 CVE ID : CVE-2022-1049 A security issue was discovered in pcs, a corosync and pacemaker configuration tool: CVE-2022-1049 It was discovered that expired accounts were still able to login via PAM. For Debian 10 buster, this problem has been fixed in version 0.10.1-2+deb10u1. We recommend that you upgrade your pcs packages. For the detailed security status of pcs please refer to its security tracker page at: https://security-tracker.debian.org/tracker/pcs Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEExaW53cM9k/u2PWfIMofYmpfNqHsFAmMiT7AACgkQMofYmpfN qHsv2hAAmJ9ZXxE0hru5G9OL2WkPo8P1At5T0XfvxrDSa+PrE56DNybwOljoYtWZ DMgy7bdvjyRwORRqvPo+48ZqlsOf25Y63usbKabsZbgj4ZcPBpUI+C7th228Bul9 TX2LwKesoNa1aVczm9oS3pE8dJtvYXSM3oZsm2wCdm8jNyYgeh++ZFrhRakYk1HX /n/wJg1j43h2yKrvdick/cSEOWHmGWPKer+V/0F0Pi5IoWQs07OamsQgvG/ftanR zFLyJ0s655qgAXa7xYG6Wb4ViOyd20XxL65aJyjBzHfI8leGje00mt0z6b0fCUj1 FW6H9JT4pTYhnF26s4pATun4hkoNEZhGkM2mtsq6uqSF+iQrbwxCzfMm0XLUSpbB 1aaHOr26pgteKJoDIMnvm2voLPQuR+So1oTSMLjWITrYhMYkNa56Ks7U0bhWWhyt s5D5/yLCT4xZBWkP+C2fDMrqfOUU67Yy9VoHggURywyGA7ynI8q2WMMS5ZIVM9mf 78Ut4PqXJWFO+xGGOqVS6Tz2mX7V330zsKHeH1ml+/NIo7k/IqRZVpYTPHIOBiMm CVIE7/y89Io0tzcOot+84y/qhDRq1Pw3YGzabRYofGnQ+TCBtheRO6EaDJVtgpxL ZtqkfSJIbshYKpC0CZFEw3NaRVH/gsQHFFpgzq3GTkvSLjS5hqg= =xOIK -----END PGP SIGNATURE-----