Volver a los avisos de seguridad

Fence-Agents Security Update — AlmaLinux 9 (ALSA-2026:50317)

This is a security release for AlmaLinux 9. Update the product on every affected server to the patched release — there is no workaround, and unpatched servers remain exposed until updated.

High
AlmaLinux 9

Comandos de corrección

EL8+ (AlmaLinux/CloudLinux/Rocky)

sudo dnf update

Lo que esto significa bajo una licencia de SharedLicense

Your SharedLicense license itself is not affected — this is a change in AlmaLinux 9 software, not in licensing. Update the product through its standard update channel. Licenses keep working through updates; nothing needs re-issuing or re-activating.

The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.

Security Fix(es):

* httplib2: httplib2: Denial of Service via unbounded decompression of HTTP resp…

The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.   

Security Fix(es):  

  * httplib2: httplib2: Denial of Service via unbounded decompression of HTTP response bodies (CVE-2026-59939)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Comprueba tu sistema en busca de vulnerabilidades

Selecciona tu producto y sistema operativo para ver los comandos de corrección exactos que se aplican a ti.

Comprueba tu sistema