<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T02:25:16.128051+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2020:5487</id>
    <title>ALSA-2020:5487 — Moderate: pacemaker security update</title>
    <updated>2026-10-05T02:25:16.139262+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: pacemaker, AlmaLinux:8: pacemaker-cli, AlmaLinux:8: pacemaker-cts, AlmaLinux:8: pacemaker-doc, AlmaLinux:8: pacemaker-libs-devel, AlmaLinux:8: pacemaker-nagios-plugins-metadata, AlmaLinux:8: pacemaker-remote</p>
<p>The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures.</p>
<p>Security Fix(es):</p>
<p>* pacemaker: ACL restrictions bypass (CVE-2020-25654)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2020:5487"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-03617</id>
    <title>bdu:2021-03617</title>
    <updated>2026-10-05T02:25:16.139326+00:00</updated>
    <content>bdu:2021-03617</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-03617"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-45762</id>
    <title>EUVD-2026-45762</title>
    <updated>2026-10-05T02:25:16.139343+00:00</updated>
    <content>EUVD-2026-45762</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-45762"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-25654</id>
    <title>fkie_cve-2020-25654</title>
    <updated>2026-10-05T02:25:16.139355+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the configuration.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-25654"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3q2f-h5rm-7qv7</id>
    <title>GHSA-3q2f-h5rm-7qv7</title>
    <updated>2026-10-05T02:25:16.139376+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An ACL bypass flaw was found in pacemaker before 1.1.24-rc1 and 2.0.5-rc2. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the configuration.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3q2f-h5rm-7qv7"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-25654</id>
    <title>gsd-2020-25654</title>
    <updated>2026-10-05T02:25:16.139391+00:00</updated>
    <content>gsd-2020-25654</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-25654"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2022-1900</id>
    <title>OESA-2022-1900 — pacemaker security update</title>
    <updated>2026-10-05T02:25:16.139400+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP3: pacemaker</p>
<p>Pacemaker is an advanced, scalable High-Availability cluster resource manager.

Security Fix(es):

An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the configuration.(CVE-2020-25654)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2022-1900"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2020:5423</id>
    <title>RHSA-2020:5423 — Red Hat Security Advisory: pacemaker security update</title>
    <updated>2026-10-05T02:25:16.139420+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>pacemaker: ACL restrictions bypass</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2020:5423"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2020:5453</id>
    <title>RHSA-2020:5453 — Red Hat Security Advisory: pacemaker security update</title>
    <updated>2026-10-05T02:25:16.139436+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>pacemaker: ACL restrictions bypass</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2020:5453"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2020:3094-1</id>
    <title>SUSE-SU-2020:3094-1 — Security update for pacemaker</title>
    <updated>2026-10-05T02:25:16.139450+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for pacemaker</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2020:3094-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-25654</id>
    <title>UBUNTU-CVE-2020-25654</title>
    <updated>2026-10-05T02:25:16.139462+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: pacemaker, Ubuntu:18.04:LTS: pacemaker, Ubuntu:20.04:LTS: pacemaker</p>
<p>An ACL bypass flaw was found in pacemaker. An attacker having a local account on the cluster and in the haclient group could use IPC communication with various daemons directly to perform certain tasks that they would be prevented by ACLs from doing if they went through the configuration.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-25654"/>
  </entry>
</feed>
