#VU19270 Input validation error in Fence Agents - CVE-2019-10153
Published: July 19, 2019
Fence Agents
ClusterLabs
Description
The vulnerability allows a remote authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input when processing non-ASCII characters in guest comments field. A remote attacker can append specially crafted comments to the VM and trigger denial of service condition.