CVE-2016-7797

Severity CVSS v4.0:
Pending analysis
Type:
CWE-254 Security Features
Publication date:
24/03/2017
Last modified:
20/04/2025

Description

Pacemaker before 1.1.15, when using pacemaker remote, might allow remote attackers to cause a denial of service (node disconnection) via an unauthenticated connection.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:clusterlabs:pacemaker:*:*:*:*:*:*:*:* 1.1.14 (including)
cpe:2.3:o:opensuse:leap:42.2:*:*:*:*:*:*:*
cpe:2.3:o:opensuse_project:leap:42.1:*:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_high_availability:12:sp2:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_software_development_kit:12:sp2:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_high_availability:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_resilient_storage:7.0:*:*:*:*:*:*:*