[ALSA-2021:4139] Moderate: resource-agents security, bug fix, and enhancement update
Type:
security
Severity:
moderate
Release date:
2021-11-12
Description:
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment. Security Fix(es): * python-pygments: Infinite loop in SML lexer may lead to DoS (CVE-2021-20270) * python-pygments: ReDoS in multiple lexers (CVE-2021-27291) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
x86_64 resource-agents-4.1.1-98.el8.x86_64.rpm 27c37f6696043092b21f85a0a03248d2e090440dabbcfec86e52b4caaa341dc5
x86_64 resource-agents-aliyun-4.1.1-98.el8.x86_64.rpm 8b43e7a84371e66e95f183de6e92b519da00d44f354e8dc1eda468a84ec9236f
x86_64 resource-agents-gcp-4.1.1-98.el8.x86_64.rpm c293b9342f5f616e82eae38bbec9724629cf5b7d87b03dd241ec1167995e357d
x86_64 resource-agents-paf-4.1.1-98.el8.x86_64.rpm e9e0b4b73f27330996b33ba3208ee0cfa8cca21fc2cba26187d64c7d6f8f6c3b
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.