[ALSA-2025:0743] Moderate: keepalived security update
Type:
security
Severity:
moderate
Release date:
2025-01-29
Description:
The keepalived utility provides simple and robust facilities for load balancing and high availability. The load balancing framework relies on the well-known and widely used IP Virtual Server (IPVS) kernel module providing layer-4 (transport layer) load balancing. Keepalived implements a set of checkers to dynamically and adaptively maintain and manage a load balanced server pool according to the health of the servers. Keepalived also implements the Virtual Router Redundancy Protocol (VRRPv2) to achieve high availability with director failover. Security Fix(es): * keepalived: Integer overflow vulnerability in vrrp_ipsets_handler (CVE-2024-41184) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 keepalived-2.1.5-10.el8_10.aarch64.rpm f58158db258fc5eb93bb9c588d2d50a09e939ae406fdaa820015af294a2a41b5
ppc64le keepalived-2.1.5-10.el8_10.ppc64le.rpm 970a787bc7ab91a56946e55405c62c917cbc33264dbb5d024d613c9f9783967e
s390x keepalived-2.1.5-10.el8_10.s390x.rpm a8a202a6331ef0fab4c4772e0b74420b251d1137d4fec2a20a15ef4739751981
x86_64 keepalived-2.1.5-10.el8_10.x86_64.rpm b999a4a7d6f202ab8672c1b0b54177eb5f6ed9660ed4c5116c2f16563e31bf74
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.