- What: Security update for fence-agents in Red Hat Enterprise Linux 9
- Impact: Systems using fence-agents may be vulnerable to cryptographic attacks
Red Hat Product Errata RHSA-2026:19355 - Security Advisory Issued: 2026-05-19 Updated: 2026-05-19 RHSA-2026:19355 - Security Advisory Overview Updated Packages Synopsis Important: fence-agents security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for fence-agents is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. Security Fix(es): cryptography: cryptography Subgroup Attack Due to Missing Subgroup Validation for SECT Curves (CVE-2026-26007) pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 ?4.1.11 MUST violation) (CVE-2026-32597) pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion (CVE-2026-30922) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 9 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.8 x86_64 Red Hat Enterprise Linux for IBM z Systems 9 s390x Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.8 s390x Red Hat Enterprise Linux for Power, little endian 9 ppc64le Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.8 ppc64le Red Hat Enterprise Linux for ARM 64 9 aarch64 Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.8 aarch64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.8 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.8 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.8 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.8 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.8 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.8 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.8 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.8 s390x Fixes BZ - 2438762 - CVE-2026-26007 cryptography: cryptography Subgroup Attack Due to Missing Subgroup Validation for SECT Curves BZ - 2447194 - CVE-2026-32597 pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 ?4.1.11 MUST violation) BZ - 2448553 - CVE-2026-30922 pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion CVEs CVE-2026-26007 CVE-2026-30922 CVE-2026-32597 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 9 SRPM fence-agents-4.10.0-110.el9_8.2.src.rpm SHA-256: 2149ba3a11b4ecb3d9f6a7522948781bda6d539082178196a9c80887a8991b52 x86_64 fence-agents-aliyun-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: f9f6a4a520cb724bee88d80edd1b8fd2f29e170575d280d267f9d4c8b8c83360 fence-agents-all-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: 5a14a5f9f6860b7d65f22ccfb188beba567a0e55255a9addfc4528c609ec22d9 fence-agents-amt-ws-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 5c426a5c6569439be105cfc8e0094c8d136789d5c781faa8cb28507527fe77cf fence-agents-apc-4.10.0-110.el9_8.2.noarch.rpm SHA-256: d62760210bfdcde81f2d51db6e08788c2b61b2ce041c513d3288a9f10aa7f593 fence-agents-apc-snmp-4.10.0-110.el9_8.2.noarch.rpm SHA-256: c4fc1bd85a09427c3dcbbc25dba700d5b73c145ba280ed95bcee6d4e720f8d9e fence-agents-aws-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: ac704e9e8fba9e21b48032d9044e03526af9f2ecb0e579a76e41894d3fed0337 fence-agents-azure-arm-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: 99b16f20a8869d56217861a73c589bce8a47cf17a4792c8ec357d0fe7e90b0a8 fence-agents-bladecenter-4.10.0-110.el9_8.2.noarch.rpm SHA-256: c5eecaae4976d44957a0ee65d9626f26a9bc31af729641adb73501a5a04378ae fence-agents-brocade-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 9a1a12aab78320e04f7030a2c1ce0871699777d7b18d75f9014d13f34c2b2cd4 fence-agents-cisco-mds-4.10.0-110.el9_8.2.noarch.rpm SHA-256: ef824b341a15df5b079bd63f5be2e830828726c8c8b182a69ec469a6f2236bf8 fence-agents-cisco-ucs-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 2df4cfffc815282bc697a9149c1cca4f144bbc44103fa50823dd10e3874665b5 fence-agents-common-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 52e1dab9ad18845776c62120908cadd793c3a337cb2547017d365f6edb88c396 fence-agents-compute-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: 2567db9b2ff0faa92aab0f83e94b452ec45d4df240a96bd9fd4a1e0ee3ae2545 fence-agents-debuginfo-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: 068082617ab1ad1ccb769ed2d4eadf4576305962dc76ca062e6088aa045acea1 fence-agents-debugsource-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: dbd8bbefc195f9f7022dd3fb6bc0b354433ce2069e7a5c04c344efc564996439 fence-agents-drac5-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 58bd680f20f392316d2e1a3325fb6a32d5afb16165ed71a7f3240b0911581a88 fence-agents-eaton-snmp-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 9705dd2f61553223fb3f0914c594cbe86ec8af8b17ad2fef16fc9956ebff7da0 fence-agents-emerson-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 03c00b76331a8a2e02ff0ef6a3df062eb57894ce06710447cbe80118f974793b fence-agents-eps-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 9e76f7112a977ff40f7edefe947be0132663952237802af03ce94ab51dd963bc fence-agents-gce-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: 7b4efe4b938d93be5659b8bc5847fa1704746abd119e73cbecf1848bfe60c1d8 fence-agents-heuristics-ping-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 24da0f703970bee44e80f2a35ff71414f5d8b0ea0d84e275604bcae310337b4a fence-agents-hpblade-4.10.0-110.el9_8.2.noarch.rpm SHA-256: d1513b3331b7ec1e6dfff0ecbe34fd1f32ec527024ae39d547c41752ab4033a6 fence-agents-ibm-powervs-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 5c123e3a2e1be3ca80884af1d60b18918c2aca0198013f5be37092b3d921612d fence-agents-ibm-vpc-4.10.0-110.el9_8.2.noarch.rpm SHA-256: cf6ee6ca28fdb65ef6dd8d70a0dd64b5175219903df93d5ef1236d0c5ff28705 fence-agents-ibmblade-4.10.0-110.el9_8.2.noarch.rpm SHA-256: bd31c8bd1a1b3cb6ca32c55873914b3834bbd0146f86144c8e6091f0eabfbed6 fence-agents-ifmib-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 5711fda192a3e3597026a10a135aee0214ebfa1affee32f62e17f3185e216034 fence-agents-ilo-moonshot-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 268d92c92f774297befaee78b919d989cebc89a27e3d8a0c441c59d3f74ccae1 fence-agents-ilo-mp-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 6364044a91de5248d2a2bde13efc98427c8c5dbe19496266fec40c9025d0dcd2 fence-agents-ilo-ssh-4.10.0-110.el9_8.2.noarch.rpm SHA-256: f14fd112b69a5421dd94691a46de3033a926c268705342143612387b6c75142a fence-agents-ilo2-4.10.0-110.el9_8.2.noarch.rpm SHA-256: ccfb7ac806af038f6beeee69f19961485e7b2a4a89445d1dbcede6d597c37377 fence-agents-intelmodular-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 8410da6e0b9a4cad137d9af6e611163282204976d4b108d5a358e17ebfebcff3 fence-agents-ipdu-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 0b40adb1ee2d0a3d5693607a57604f27993351a323cb0f4f1ccb219ff100e1e1 fence-agents-ipmilan-4.10.0-110.el9_8.2.noarch.rpm SHA-256: f6ef1f7701e2b9ffcf7565ec23e4f59bb8e649282f7f33b77e7d4c075a671dfd fence-agents-kdump-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: c1a050093d4307db8ab18f15e9277f6a472e89c3a0289c5fc0280ead50bcfe5e fence-agents-kdump-debuginfo-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: e7737e06fe68d7392cdcd32edb43be3d5cef04a729fd6e64d9c2173802fad9a5 fence-agents-kubevirt-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: 239b651a2ad93ec236f1132019af8065a4b0ef1bd10243faaf071bb22b4f8e24 fence-agents-kubevirt-debuginfo-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: e60fcdaacae2d071d0c01abe25bd793adde1e9105a148aae0c25e12c0b254c31 fence-agents-lpar-4.10.0-110.el9_8.2.noarch.rpm SHA-256: c24044c56511c620b9587d8db05393ff50bd656de2bbaab79c41c52dd20d4ee1 fence-agents-mpath-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 0868a1c246924748c8d78444b161c5b1313ca88c986c504223e85b7fd17aa868 fence-agents-nutanix-ahv-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 66fd83be47429a57bea8d921f359572b40b74368c7023055b292eb784cb89a09 fence-agents-openstack-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: 12fdf76bbd2db350f17bc9a27c8cb4213549b136fa0dfdb19f40d37b85cce174 fence-agents-redfish-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: b545412423ff6f6b08029e7c06ffd78e3cad5f5d9d803edf4be890ccd765db6e fence-agents-rhevm-4.10.0-110.el9_8.2.noarch.rpm SHA-256: a4b1341b9fd25cfa3778c293ae5d335ea5c430271dc0e799d244690eccecbf05 fence-agents-rsa-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 8788950ac10fbeb4602539f6e4e98e516226562a47e0f08ccff356a1685a332f fence-agents-rsb-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 7e7a5bad79257fbea5bfb602856aa5185249c57567240179f09ee427cb44a0a3 fence-agents-sbd-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 0be397845b69fa60417b8de84a73082d96541e650a410c98ef756803a1f3fd3a fence-agents-scsi-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 00a3cd4a19d437d336d8e15a078def3c8a6b2d606c4f2738fc980ea3ed00fb72 fence-agents-virsh-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 27ac11beb3372136831f4a42c72ab5708c04afbdcb1d3a423031a1262f8254bf fence-agents-vmware-rest-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 2f535b078d4b4d5c424742068b5008c13ce9bdaf280703b96e2d7e4b6ac742e6 fence-agents-vmware-soap-4.10.0-110.el9_8.2.noarch.rpm SHA-256: c607921d950c88bb28b33f9bb0d6c02c7f36560cb64fafe7d4b6ccf015cdf1b3 fence-agents-wti-4.10.0-110.el9_8.2.noarch.rpm SHA-256: 1d8dcabbe3c8953f23ecc5e67c383fa42ff74da2e08a540d7f6f96c712c57225 fence-virt-4.10.0-110.el9_8.2.x86_64.rpm SHA-256: 4ba26d9035978fdcceaf499e547df0945ebada8c0b207e66103e8f2aa44