Red Hat Product Errata RHSA-2026:20588 - Security Advisory Issued: 2026-05-26 Updated: 2026-05-26 RHSA-2026:20588 - Security Advisory Overview Updated Packages Synopsis Important: fence-agents security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for fence-agents is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. Security Fix(es): pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion (CVE-2026-30922) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64 Red Hat Enterprise Linux Server - TUS 8.8 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le Red Hat Enterprise Linux High Availability for Power LE - Update Services for SAP Solutions 8.8 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64 Red Hat Enterprise Linux High Availability for x86_64 - Update Services for SAP Solutions 8.8 x86_64 Red Hat Enterprise Linux High Availability for x86_64 - Telecommunications Update Service 8.8 x86_64 Red Hat Enterprise Linux High Availability for x86_64 - Extended Update Support Extension 8.8 x86_64 Fixes BZ - 2448553 - CVE-2026-30922 pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion CVEs CVE-2026-30922 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 SRPM fence-agents-4.2.1-112.el8_8.17.src.rpm SHA-256: 3649f0afcdc6823d1413e27dec8239a063863832a23cbda42a95da93bf4acc6e x86_64 fence-agents-aliyun-debuginfo-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: a8432ac204bec7d070c00d9004b075c8b10c88c625792a1e5e0c70f8f645d1a7 fence-agents-all-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: dbf28b2649071c76faf2f9d36fcc3dc6da7e538e3b556fc0280dfad09da8957e fence-agents-amt-ws-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 8619e4d8861a47ac082469abf770c5e457af6a009ac1efac17d60df37e627b17 fence-agents-apc-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 84b7059f35c9b1a7a6453bbeae4e8aaae335db0721441f0ce6f8914f6f978aea fence-agents-apc-snmp-4.2.1-112.el8_8.17.noarch.rpm SHA-256: a9cfcef9a93d49ec1a42c881062ee4897d87ced868721c8987db346630a23a55 fence-agents-bladecenter-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 8dcbc4e503a93557a28c8abddb2818fbe63e60eb90aa76a9bb11cfcb7d93a88e fence-agents-brocade-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 151c833e0acb6a1348c1e0768356851c25c936d95c95ebe8006e2efc81f9f678 fence-agents-cisco-mds-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 2f36d4c60c67b1de815fd34b35cca84d8f88732a975a9b2f6e202f84a53c00e0 fence-agents-cisco-ucs-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 99550fe24854c3787171c2c89617c6a12419d507b0bbcb8e427ad252d5dc7b13 fence-agents-common-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 8e8af28c700e4630bca0dcd1692f4bca784ffe24310b4f28cf66ab763ea2666f fence-agents-compute-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 0a60ec984d6f92cd794d469228080e1c9d421de6ed6482612e25d17c8fcea8c2 fence-agents-debuginfo-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: a18a068af621112307fc596405d207a150eeb23565f77b5adf5e987e241a64f5 fence-agents-debugsource-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: 36d94e434db1b71c7dbee3a532e65ec6f2ba36d59c90df2400bc82f3b7f060a6 fence-agents-drac5-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 368427e73785b9f63ba7fe94e5b01ae40b8eb447c76e793700968ed90dfef39e fence-agents-eaton-snmp-4.2.1-112.el8_8.17.noarch.rpm SHA-256: e3b4a36c8fc0b9278a14b483a54a417b3e4a0b16a1de8b5f97df076b4dcc6f4c fence-agents-emerson-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 50f084b5dfbaeea2e9c601514b36c610a8b4b993dcd5eab1973ee5f80e9cf472 fence-agents-eps-4.2.1-112.el8_8.17.noarch.rpm SHA-256: aa94dcbfc154253d2b81bf1f32e6ed3d871cd72f60da5c5fe585381091dbf2b2 fence-agents-heuristics-ping-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 2870804f002c90f1601d0932bfa6f44f196896349b98dab3d60b21ee603b894f fence-agents-hpblade-4.2.1-112.el8_8.17.noarch.rpm SHA-256: de7da63157bda403babe41ec20b7fbe762df151afbb869e4a95d98a1cab80c42 fence-agents-ibm-powervs-4.2.1-112.el8_8.17.noarch.rpm SHA-256: d3c7fc8e741a796eb4d5e09d8522159198edd9e8ca3aefc8d02ccc73738e60bf fence-agents-ibm-vpc-4.2.1-112.el8_8.17.noarch.rpm SHA-256: b138fd0d93273348201782eb582751082a2d2c33cd4e0cd07c901c32e4f5dc49 fence-agents-ibmblade-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 2b511fa5354bebaca0b667e3bd0b7e8133e7b25e255a08a6c854d4cddbffde7a fence-agents-ifmib-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 390f479129df25674cfe8e0ce716085965aa86580a6c788317f2e0c533973e4c fence-agents-ilo-moonshot-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 17bee474fbac280f89d865b5b4421e8865b11b4ac35fba6ff7ab85b52604e001 fence-agents-ilo-mp-4.2.1-112.el8_8.17.noarch.rpm SHA-256: ea886fc01328bc5aac0f27e09f0f2e85ec98b9d2dee033397e5f3f383900a1c7 fence-agents-ilo-ssh-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 30d85c280068aa344ae3e093bda5dbb4547d0fd557f226a7d022e8db3f77a1b1 fence-agents-ilo2-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 1d219bd928fa8c4b2ef2152ca6a256cdc968ad075c59ec6761ba2f2bfbd529d0 fence-agents-intelmodular-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 8ec1bc74a7ca704ee657b313c54757a3bd8ae2314e53e168b9afa5d55d642d7e fence-agents-ipdu-4.2.1-112.el8_8.17.noarch.rpm SHA-256: c9ff07c54889972d413d190280333d34ce89ad7bc4ef0201417dba950b07adae fence-agents-ipmilan-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 44c10638aa454bb7d43892c9bff9881c68a84bdebcf74e52f59619dcf83e7361 fence-agents-kdump-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: ef97d05b4d97abf722c043cc444a5d877d3937b77bd483022d84331ac92e554b fence-agents-kdump-debuginfo-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: c2df1a73bd6726dc8995eddc07320336020d56f07b3d8b45d59b2103b5ed00a0 fence-agents-kubevirt-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: b6ba9785238e026b38df47bd9c6443d2e79f89a91ee7b99c0dbdbc685e539c02 fence-agents-kubevirt-debuginfo-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: 0d6ff1954d7aa0f1fb83a2599d626319be197ad2488d96434c284e0ba430d1ae fence-agents-lpar-4.2.1-112.el8_8.17.noarch.rpm SHA-256: b1b09425cbc94ebf7834d26b3cd117980b1c81273f015b056856a76b03652984 fence-agents-mpath-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 267077cc191ceb9f4d5fdf75d1343d1bd1a480d91b69a1ce953680bb44015e8d fence-agents-nutanix-ahv-4.2.1-112.el8_8.17.noarch.rpm SHA-256: ced1ad8a6efd142bedbcc1d15dc914fb8ef04cfed3a0ef3c379fb95b3263601a fence-agents-redfish-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: 56f47d5e85d5fe057a036989c1e2ae6e0147b527cb91e30a6d1c9d27fcd02ba0 fence-agents-rhevm-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 9b633b231723d42938f9b9ebcdaad83f31b4d7665619676f177dc534ab66b2da fence-agents-rsa-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 043b015f438c17dfe769b33efac9741c61ebddfe790e1f0b3f6e5f6e6a42dc35 fence-agents-rsb-4.2.1-112.el8_8.17.noarch.rpm SHA-256: cd244fc729e6463b965ca82f19d7490c1e5afebb7268af8ef7842ab38808164c fence-agents-sbd-4.2.1-112.el8_8.17.noarch.rpm SHA-256: c6d4d517126e96fa0f3ee5d1dca31957845a2a63b632f64ca3a203b1f12bb111 fence-agents-scsi-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 168f448c853b0713e994373f8674298efeda8812d5a559f1885f9e978c7ccc5b fence-agents-virsh-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 91fd363bd5b4fbd8fbd8748519e150cbfe2fb2d1d5c152eb05489797b79f27b0 fence-agents-vmware-rest-4.2.1-112.el8_8.17.noarch.rpm SHA-256: b79d523769d353e1a7530a7942e9d2a2869eac98e8f966fde4c7093d1ae2299a fence-agents-vmware-soap-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 46c6d1a3feeacafe50fd2b9af728e68285df6320faadb56997acac56e8852ea7 fence-agents-wti-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 6210a2128118a2033c854e3fc408d499407e95d3cc2b1cfec4cfc87aa486cd0d Red Hat Enterprise Linux Server - TUS 8.8 SRPM fence-agents-4.2.1-112.el8_8.17.src.rpm SHA-256: 3649f0afcdc6823d1413e27dec8239a063863832a23cbda42a95da93bf4acc6e x86_64 fence-agents-aliyun-debuginfo-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: a8432ac204bec7d070c00d9004b075c8b10c88c625792a1e5e0c70f8f645d1a7 fence-agents-all-4.2.1-112.el8_8.17.x86_64.rpm SHA-256: dbf28b2649071c76faf2f9d36fcc3dc6da7e538e3b556fc0280dfad09da8957e fence-agents-amt-ws-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 8619e4d8861a47ac082469abf770c5e457af6a009ac1efac17d60df37e627b17 fence-agents-apc-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 84b7059f35c9b1a7a6453bbeae4e8aaae335db0721441f0ce6f8914f6f978aea fence-agents-apc-snmp-4.2.1-112.el8_8.17.noarch.rpm SHA-256: a9cfcef9a93d49ec1a42c881062ee4897d87ced868721c8987db346630a23a55 fence-agents-bladecenter-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 8dcbc4e503a93557a28c8abddb2818fbe63e60eb90aa76a9bb11cfcb7d93a88e fence-agents-brocade-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 151c833e0acb6a1348c1e0768356851c25c936d95c95ebe8006e2efc81f9f678 fence-agents-cisco-mds-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 2f36d4c60c67b1de815fd34b35cca84d8f88732a975a9b2f6e202f84a53c00e0 fence-agents-cisco-ucs-4.2.1-112.el8_8.17.noarch.rpm SHA-256: 99550fe24854c3787171c2c89617c6a12419d507b0bbcb8e427ad252d5dc7b13 fence-agents-common-4.2.1-112.el8_8.17.noarch.rpm SHA-256:
A Denial of Service vulnerability (CVE-2026-30922, CVSS 7.5 HIGH) exists in the `pyasn1` library used by fence-agents, where unbounded recursion can be exploited. The vulnerability affects `pyasn1` versions prior to 0.6.3, and the fix requires updating the `pyasn1` dependency to version 0.6.3. Red Hat has released an Important security update for fence-agents packages on specific RHEL 8.8 Update Services to address this.