Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-10649— Pacemaker: pacemaker: denial of service via integer overflow in remote message decompression

CVSS 8.6 · High EPSS 0.56% · P44

Possible ATT&CK Techniques 1AI

T1499 · Endpoint Denial of Service
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-10649

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Pacemaker: pacemaker: denial of service via integer overflow in remote message decompression
Source: CVE Program / CVE List V5
Vulnerability Description
A flaw was found in Pacemaker. An unauthenticated remote attacker can exploit an integer overflow vulnerability in the remote message decompression process. By sending a specially crafted compressed remote message before authentication, an attacker can cause memory corruption, leading to a denial of service (DoS) in the CIB remote listener. This can result in the affected service crashing.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
整数溢出或超界折返
Source: CVE Program / CVE List V5
Vulnerability Title
ClusterLabs Pacemaker 数字错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
ClusterLabs Pacemaker是ClusterLabs组织开源的一款可扩展的高可用性集群资源管理器。 ClusterLabs Pacemaker存在安全漏洞,该漏洞源于远程消息解压缩过程中的整数溢出,可能导致未经身份验证的远程攻击者通过发送特制的压缩远程消息,造成内存损坏,导致CIB远程监听器拒绝服务。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Red HatRed Hat Enterprise Linux 10 0:3.0.1-5.el10_2.1 ~ * cpe:/o:redhat:enterprise_linux:10.2
Red HatRed Hat Enterprise Linux 10.0 Extended Update Support 0:3.0.0-5.3.el10_0 ~ * cpe:/o:redhat:enterprise_linux_eus:10.0
Red HatRed Hat Enterprise Linux 7 Extended Lifecycle Support 0:1.1.23-1.el7_9.2 ~ * cpe:/o:redhat:enterprise_linux:7::server
Red HatRed Hat Enterprise Linux 8 0:2.1.7-5.6.el8_10 ~ * cpe:/a:redhat:enterprise_linux:8::appstream
Red HatRed Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support 0:2.0.5-9.el8_4.12 ~ * cpe:/a:redhat:rhel_aus:8.4::appstream
Red HatRed Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On 0:2.0.5-9.el8_4.12 ~ * cpe:/a:redhat:rhel_aus:8.4::appstream
Red HatRed Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support 0:2.1.2-4.el8_6.11 ~ * cpe:/a:redhat:rhel_aus:8.6::appstream
Red HatRed Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On 0:2.1.2-4.el8_6.11 ~ * cpe:/a:redhat:rhel_aus:8.6::appstream
Red HatRed Hat Enterprise Linux 8.8 Telecommunications Update Service 0:2.1.5-9.7.el8_8 ~ * cpe:/a:redhat:rhel_e4s:8.8::appstream
Red HatRed Hat Enterprise Linux 8.8 Update Services for SAP Solutions 0:2.1.5-9.7.el8_8 ~ * cpe:/a:redhat:rhel_e4s:8.8::appstream
Red HatRed Hat Enterprise Linux 9 0:2.1.10-3.el9_8 ~ * cpe:/a:redhat:enterprise_linux:9::appstream
Red HatRed Hat Enterprise Linux 9.2 Update Services for SAP Solutions 0:2.1.5-9.el9_2.7 ~ * cpe:/a:redhat:rhel_e4s:9.2::highavailability
Red HatRed Hat Enterprise Linux 9.4 Update Services for SAP Solutions 0:2.1.7-5.5.el9_4 ~ * cpe:/a:redhat:rhel_e4s:9.4::highavailability
Red HatRed Hat Enterprise Linux 9.6 Extended Update Support 0:2.1.9-1.4.el9_6 ~ * cpe:/a:redhat:rhel_eus:9.6::appstream
Red HatRed Hat Enterprise Linux 6-cpe:/o:redhat:enterprise_linux:6
Red HatRed Hat OpenShift Container Platform 4-cpe:/a:redhat:openshift:4

II. Public POCs for CVE-2026-10649

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium
Qwen3.6-35B-A3B · 13691 chars
Pro+ exclusive includes:
Vulnerability reproduction recording (real sandbox build + trigger, exclusive)
In-depth vulnerability mechanism
Trigger conditions & impact
Full executable POC code
Exploit chain & mitigation
POC zip download
100+ AI POC generations per month

III. Intelligence Information for CVE-2026-10649

登录查看更多情报信息。

Patches & Fixes for CVE-2026-10649 (1)

Vendor Advisories for CVE-2026-10649 (12)

Same Patch Batch · Red Hat · 2026-06-16 · 8 CVEs total

CVE-2026-123987.5 HIGHGalaxy_ng: shell injection in legacy role import via unsanitized git ref names
CVE-2026-420146.6 MEDIUMGnutls: gnutls: use-after-free in gnutls_pkcs11_token_set_pin
CVE-2026-17675.6 MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leading
CVE-2026-17665.6 MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: denial of service and inform
CVE-2026-17655.6 MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: denial of service and potent
CVE-2026-17645.6 MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leads t
CVE-2026-43675.5 MEDIUMLibxpm: libxpm: denial of service via out-of-bounds read in xpm file parsing

IV. Related Vulnerabilities

V. Comments for CVE-2026-10649

No comments yet


Leave a comment