CVE-2019-10153: Clusterlabs Fence-Agents
Medium severity, CVSS 5.0. EPSS: 2.2% chance of exploitation in the next 30 days.
A flaw was discovered in fence-agents, prior to version 4.3.4, where using non-ASCII characters in a guest VM's comment or other fields would cause fence_rhevm to exit with an exception. In cluster environments, this could lead to preventing automated recovery or otherwise denying service to clusters of which that VM is a member.
Affected products
- Clusterlabs Fence-Agents: before 4.3.4 (fixed in 4.3.4)
- Red Hat Enterprise Linux: version 8.0 only
- Red Hat Enterprise Linux Server: version 7.0 only
- Red Hat Enterprise Linux Workstation: version 7.0 only
Published 2019-07-30. Last modified 2026-06-17.