Security News

Cybersecurity news aggregator

🔄
HIGH Updates Red Hat Errata

RHSA-2026:17083: Important: fence-agents security update

This security update addresses two high-severity vulnerabilities (CVSS 7.5) in the `fence-agents` package for Red Hat Enterprise Linux 10.0 EUS, stemming from its dependencies. The `pyjwt` library (versions before 2.12.0) improperly accepts unknown critical header extensions, violating RFC 7515, while the `pyasn1` library (versions before 0.6.3) is vulnerable to a denial of service via unbounded recursion. The fix is included in the updated `fence-agents` packages provided by Red Hat.
Read Full Article →

Red Hat Product Errata RHSA-2026:17083 - Security Advisory Issued: 2026-05-13 Updated: 2026-05-13 RHSA-2026:17083 - Security Advisory Overview Updated Packages Synopsis Important: fence-agents security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for fence-agents is now available for Red Hat Enterprise Linux 10.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. Security Fix(es): pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 ?4.1.11 MUST violation) (CVE-2026-32597) pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion (CVE-2026-30922) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.0 x86_64 Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.0 s390x Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.0 ppc64le Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.0 aarch64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.0 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.0 s390x Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.0 ppc64le Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.0 x86_64 Fixes BZ - 2447194 - CVE-2026-32597 pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 ?4.1.11 MUST violation) BZ - 2448553 - CVE-2026-30922 pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion CVEs CVE-2026-30922 CVE-2026-32597 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.0 SRPM fence-agents-4.16.0-5.el10_0.9.src.rpm SHA-256: c4bd88ccf3c47bd14a0f8e294e3182cac5c12a288304cd5e67112b3d0a72cc49 x86_64 fence-agents-aliyun-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 7b3bd461d4af770bcc35c2afbfea5757aa4c1f4a16c8a2fb7bbafed4a8266e44 fence-agents-all-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 9222f499c8e6488167c3b7e9da3cae47f50281b55ec73a97c9a2ffe6aaee0268 fence-agents-amt-ws-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 43375e3cfdcdfcfc2bcf05e5e49d7d450e2b1ec4cf9b1e3c41a723cd27a88704 fence-agents-apc-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 920e9a523c87c4b5f7cb5383f366d6efe72fa5559832770f10ea1247993c279b fence-agents-apc-snmp-4.16.0-5.el10_0.9.noarch.rpm SHA-256: bb8355988ff5803ed07ba40771f068c9234d3acb6d74d469adcc7f13ebe1239d fence-agents-aws-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: b3eada0d110df7d1befbaf2348eabaa9afd083ee1330a96fd566861133108d78 fence-agents-azure-arm-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 1113c787e8b1767c1e22c7b9bfd48d64f4a1c0bb34afc61b436d0de3d14031c9 fence-agents-bladecenter-4.16.0-5.el10_0.9.noarch.rpm SHA-256: fb8f43ca132793074daf8d1db3d94e03c6aef21530a2a522a29f281fc7d10a80 fence-agents-brocade-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 8583fe93bf4126eef338625bb376a395ad962911dd165261b2d2dfb18020beca fence-agents-cisco-mds-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 6b203e72ad2f6202cd0c3049fbb9c05af89902ab76ab8cdc6be6708c53340cd2 fence-agents-cisco-ucs-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 15698e1394867a362fca7b7d9a86e4f0436fc9eb68bcd3a77a351052909bf09f fence-agents-common-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 3b09246230aaad119a1caa626d0eb2ade63fa07157659a89dcc33f1e78172359 fence-agents-common-debuginfo-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 54b903ca31beccb72d6568947bf4993b4371ffca866101559509595fca1f371d fence-agents-debuginfo-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 2efdc87dc2f9a9e376d19c16cf4d66ec45fcdb550802212f431b9e962fd2eac5 fence-agents-debugsource-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: ea85f909c9c09c672499fc1dbfb86a3e3e2da7846365932df8d5683304e13a46 fence-agents-drac5-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 3ad7530a152d7a4ae090a5e26130acc2a0eff8262969a1e5e533160ba28bf933 fence-agents-eaton-snmp-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 508337dc9eb1bf0046ca5bea862b9be21124b1a605b3335b219525cfeb0163c0 fence-agents-emerson-4.16.0-5.el10_0.9.noarch.rpm SHA-256: ac7cf475cf42054545a1045929b488b6d66b8e0cc8e7bbca77bcdc39f97e2a88 fence-agents-eps-4.16.0-5.el10_0.9.noarch.rpm SHA-256: cab457442695194d68e2341eaa12771dbaeda3d4163cb7ba70370d81818b5ca3 fence-agents-gce-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 87a06f7c9dfc1b71f406e73ecf835fd2318af5cf1d4ef7f6a6a9ef5d9d22eecb fence-agents-heuristics-ping-4.16.0-5.el10_0.9.noarch.rpm SHA-256: ba24966684e2dab6d341d564dcfd22d1b9f7aba19c010f24a985a7258c1ccf89 fence-agents-hpblade-4.16.0-5.el10_0.9.noarch.rpm SHA-256: e43add190430c076f2b946ab3f124ebd9a159bc2055b6be13e53bc46d8226250 fence-agents-ibm-powervs-4.16.0-5.el10_0.9.noarch.rpm SHA-256: cf3eb65a089a322a0b34e1811feaed2cf4fda7fc4b718f2b1bfe7002303fcc3d fence-agents-ibm-vpc-4.16.0-5.el10_0.9.noarch.rpm SHA-256: f236a07f8daa5fc4f6e96c36c4686caff415cac5a6d398808ce3e5ab0f8244ff fence-agents-ibmblade-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 6dfaf5e61d64c7d9748d0b550a2f9fbec523253f4b157b78ef3c4ea929e46c66 fence-agents-ifmib-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 76aaa247b05295672cfa696313f21f2d5aca468122bc28617ed5fa422d49e35a fence-agents-ilo-moonshot-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 17e0d9d781416ab261968ce97ec12051eee185d11ded1a9c5186fc9506dafc15 fence-agents-ilo-mp-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 55fb630edd45e25bba2ffa24377e0bf5c0b75b90608574df7225d9d031a9e56a fence-agents-ilo-ssh-4.16.0-5.el10_0.9.noarch.rpm SHA-256: b423600a1daf3e3263f584f92eadf0fa60e28b6def87a74973d7d7b842f5b0dc fence-agents-ilo2-4.16.0-5.el10_0.9.noarch.rpm SHA-256: fce383750a8f34e2ff47726bd0cb86bd03f74f918e294a929b50bd92a3cce30e fence-agents-intelmodular-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 0b772d4bd8e4e71b0048925af43bc611045ab43fd4ee6bab961e92fff0ab7c0d fence-agents-ipdu-4.16.0-5.el10_0.9.noarch.rpm SHA-256: f31a8eff03ffab8341a1f308966e074d375d51e8920b1b7bd0ffb737320c2c09 fence-agents-ipmilan-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 2d255c0d78f337b08ef8cf4edc81e0dd6b1ac4ccd817f8c62f57a4ce2d7fc323 fence-agents-kdump-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: bdd26d00d62cb1de65eac6a6758e8c90d64ffe631ee1b04ac1009210ced78651 fence-agents-kdump-debuginfo-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: f2c4c11f885b7f1bc3f06b9b691b258f56046f415ade0ce74d7fa3fa5d8bc356 fence-agents-kubevirt-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: cef18a026ef5697e7fbf6433b788fae3f25cdc5bec3fd7ef354a6171577d0f80 fence-agents-mpath-4.16.0-5.el10_0.9.noarch.rpm SHA-256: b7e8788e7902497f2371e5e8be6ee195105ec985e6e10ff677827a8cc6523005 fence-agents-nutanix-ahv-4.16.0-5.el10_0.9.noarch.rpm SHA-256: ed736d0185d62d23f0a25dfcc591de308f7f159a9bb7cb8c1c225c033b31ee3a fence-agents-openstack-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: facc6fbe1758a5f7596fbd36a020524cf4ccba593465e6be1398cbc944a81894 fence-agents-redfish-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 3e8e636703afc742c3dd73b3e31be303a58e2ce3497567be30da6a16c1edaa2d fence-agents-rhevm-4.16.0-5.el10_0.9.noarch.rpm SHA-256: ee8c03439150d3a0f85a8c98eab7c0bd6dea893f200a2d9e254ca66152f681ad fence-agents-rsa-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 8dec28d9a2bcb3f6716ec840c231d2901f4a7a9faaf698a1e71354ef36e9b7eb fence-agents-rsb-4.16.0-5.el10_0.9.noarch.rpm SHA-256: e812b0d6a0b1b97cd5d648ac7d5f8585ee1b23e73a085ba39931029f6e025f34 fence-agents-sbd-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 5e23de9e583da0c559ecd96ef19eab94bfb4c48f46abf8675f8652770efedba8 fence-agents-scsi-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 71ea3281e1079932562d6d9aa65494af8ab02643b6c22b16467482fa996a5e1d fence-agents-virsh-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 306c9f792e971545b08801555676eb09ffb323e2619965f6ba5d9c1c149be450 fence-agents-vmware-rest-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 18410018b37dcfd517ac1806df39a8dbb8b122d0a8e2061508972be1d674215a fence-agents-vmware-soap-4.16.0-5.el10_0.9.noarch.rpm SHA-256: 41ca6ce999498c95934558b7845887e86648db4137260eed779b67c461d58a89 fence-agents-wti-4.16.0-5.el10_0.9.noarch.rpm SHA-256: b94197326c2ade692e5b65ddb8877daaa3a9914a58c1d304af9a4904d5c89de5 fence-virt-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 168e4510b9c04598694a76e422628827b19a4e3e1723e104e71ad09dd606088b fence-virt-debuginfo-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 5180a8a60794d3e3a80d062bf6e714257f4ff7e3a1f05d4136113bce4fca6ec2 fence-virtd-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 1f6dd77521e936e0f1c37a597a61ecd06e68e22430f96588c711982a24a6ad10 fence-virtd-cpg-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: f68eb32f0b69b49d51005254e6de5967b7c28866e7dd4d9ef83c46bd18d63aca fence-virtd-cpg-debuginfo-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: e57dd61550f22cc4d0f143617ef433c29ef27dd25dd712ce4b78d6644497c2f6 fence-virtd-debuginfo-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 28ffbf5fad0867899b21b24253199ae92e7b6216fa0f0694eb1d9f6d087b86d2 fence-virtd-libvirt-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 71626f028ce4d2a0f3b51daab796f793e2d97e9ceb761ad9d7fa2ae00640b8e4 fence-virtd-libvirt-debuginfo-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 907d1a024d3fdb23d6953969443f78e540d0b8a98c6e832dc995497b7568a6cf fence-virtd-multicast-4.16.0-5.el10_0.9.x86_64.rpm SHA-256: 658d6537a6795f6b6e416232c5b1699bd8542651c8a3dbb2d37ded4f308bafbb fence-virtd-

Share this article