fence-agents-4.10.0-76.el9_5.4.ML.1
エラータID: AXSA:2025-9553:01
The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.
Security Fix(es):
* fence-agents: Jinja has a sandbox breakout through indirect reference to format method [rhel-9.5.z] (CVE-2024-56326)
* fence-agents: Jinja has a sandbox breakout through malicious filenames [rhel-9.5.z] (CVE-2024-56201)
CVE-2024-56201
Jinja is an extensible templating engine. In versions on the 3.x branch prior to 3.1.5, a bug in the Jinja compiler allows an attacker that controls both the content and filename of a template to execute arbitrary Python code, regardless of if Jinja's sandbox is used. To exploit the vulnerability, an attacker needs to control both the filename and the contents of a template. Whether that is the case depends on the type of application using Jinja. This vulnerability impacts users of applications which execute untrusted templates where the template author can also choose the template filename. This vulnerability is fixed in 3.1.5.
CVE-2024-56326
Jinja is an extensible templating engine. Prior to 3.1.5, An oversight in how the Jinja sandboxed environment detects calls to str.format allows an attacker that controls the content of a template to execute arbitrary Python code. To exploit the vulnerability, an attacker needs to control the content of a template. Whether that is the case depends on the type of application using Jinja. This vulnerability impacts users of applications which execute untrusted templates. Jinja's sandbox does catch calls to str.format and ensures they don't escape the sandbox. However, it's possible to store a reference to a malicious string's format method, then pass that to a filter that calls it. No such filters are built-in to Jinja, but could be present through custom filters in an application. After the fix, such indirect calls are also handled by the sandbox. This vulnerability is fixed in 3.1.5.
Update packages.
Jinja is an extensible templating engine. In versions on the 3.x branch prior to 3.1.5, a bug in the Jinja compiler allows an attacker that controls both the content and filename of a template to execute arbitrary Python code, regardless of if Jinja's sandbox is used. To exploit the vulnerability, an attacker needs to control both the filename and the contents of a template. Whether that is the case depends on the type of application using Jinja. This vulnerability impacts users of applications which execute untrusted templates where the template author can also choose the template filename. This vulnerability is fixed in 3.1.5.
Jinja is an extensible templating engine. Prior to 3.1.5, An oversight in how the Jinja sandboxed environment detects calls to str.format allows an attacker that controls the content of a template to execute arbitrary Python code. To exploit the vulnerability, an attacker needs to control the content of a template. Whether that is the case depends on the type of application using Jinja. This vulnerability impacts users of applications which execute untrusted templates. Jinja's sandbox does catch calls to str.format and ensures they don't escape the sandbox. However, it's possible to store a reference to a malicious string's format method, then pass that to a filter that calls it. No such filters are built-in to Jinja, but could be present through custom filters in an application. After the fix, such indirect calls are also handled by the sandbox. This vulnerability is fixed in 3.1.5.
N/A
SRPMS
- fence-agents-4.10.0-76.el9_5.4.ML.1.src.rpm
MD5: 2ab37d5a63b04a7c4f30ccb1cc9c4114
SHA-256: 40689d5a54d317184db0f18a11e824f8745da7089789d2f9b8b111a46c4ea377
Size: 74.79 MB
Asianux Server 9 for x86_64
- fence-agents-aliyun-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: a68a91b920a03754949cfb725ba257e3
SHA-256: ae4a26f46cf93209c625f0763709b8dda43212a4ad2f57bad25a8375292a666e
Size: 14.91 kB - fence-agents-all-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: ea8c89642dc5e9c357b13370839f972e
SHA-256: 27070c5aedf3133b1b388c14502e7a24fafe2e3696fe70d352d4eed09f2339cb
Size: 11.05 kB - fence-agents-amt-ws-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: f930d162e2e0ee09bb0808f301eace8a
SHA-256: d1fb38d883d7115b050745a162ad1961c2e5760dd775392114ae18d34a329829
Size: 15.06 kB - fence-agents-apc-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: b4845715789781e4be07bef1d4f9461a
SHA-256: a6fd4c7a184dc4e49cd8f274c0ed08d69a646cb296216a9475e50121257d2dfb
Size: 15.18 kB - fence-agents-apc-snmp-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 587e458a641be5b664c2f057ee150232
SHA-256: cadc7976819ed2bc41cad3695f68671dc7e9482b86ee6804abb9a22993d6cfac
Size: 17.54 kB - fence-agents-aws-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: 43f65926e8c7b30d6bb0851ba30b1dfc
SHA-256: 50d6c7409f0d522f15d2bda0b645789e3b72604db1f3ccdc216df7da70ce0b22
Size: 15.46 kB - fence-agents-azure-arm-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: 81135c611860baf003071cc730c14c4d
SHA-256: 59a8a9bea4a9f03661893bf194e319a57f7b4827d22bad0d43f275733eb99bbb
Size: 24.61 kB - fence-agents-bladecenter-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 5f4519f728ff5d165b673ab8e761b59a
SHA-256: 276d4a9b0ff8f91d864826f687842306483cf10f293011661ebc5f8d77a21481
Size: 14.22 kB - fence-agents-brocade-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: e6500ef77a3422e2e376550658e39070
SHA-256: 3cdbd6bb0deb38474712000fd2fcec001646285c5676c364a49621c7087fcf63
Size: 14.32 kB - fence-agents-cisco-mds-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: c16ce7c698e3a5675b03bc963d55f820
SHA-256: 48a9269a6f1a5adfd5352b1b58e9b268e5da7da4cbf503f52c65a84e07b87680
Size: 14.16 kB - fence-agents-cisco-ucs-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 8c2c428ac1a90e31ab5cf4f43e5fa404
SHA-256: c6a8e27d89de0a2346096e99559e505eebc5b935618e3e29b2bf79816193b06c
Size: 14.85 kB - fence-agents-common-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: c8d27fe41b58684a2ad8e3eea89fa6e9
SHA-256: eb2b464f5103f5b8cb8c72b46993414a148ad6e4e1e480dff2128face1e6f5c4
Size: 424.77 kB - fence-agents-compute-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: aa2928b999aaa618eaa39a6aacfb5259
SHA-256: c8e2e1552dd7a3fdbe5efd6cf307924a0c7b5e387b8eae22befcfdf763fce04f
Size: 21.31 kB - fence-agents-drac5-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 87491abfbd8525141dfe44fb7236379d
SHA-256: 249817093832d2a13a4e166ff5c94e58e5627c87b467c7d01555a381779bc374
Size: 14.83 kB - fence-agents-eaton-snmp-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 7ea3fb296b32b0e0d4e8bb43b25de0eb
SHA-256: 794e40123b000434c340c3a7f1ae6bf25ca41d9474e0413a1b767dbbe8b87432
Size: 15.35 kB - fence-agents-emerson-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: c520332aeb964eb54c3b35f2e4ef8986
SHA-256: e1dea73f57716838d5722dad91ba681fd0d9301b8b8ed06663f7771763d7762b
Size: 13.81 kB - fence-agents-eps-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: a7f939631ea7765d7817d9baa7485c21
SHA-256: 9279768db63dab57557666be094ca5ddbed9c9397263789f6a2ddc53fad30d10
Size: 16.63 kB - fence-agents-gce-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: d9f39a8c62dd8b6c590221e07feb930b
SHA-256: 0c449fec32146a1e57ca36b90918e990bc8a4faf7e477dde13330b676f0dc919
Size: 19.21 kB - fence-agents-heuristics-ping-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 73430e76e2ec2df49228570ce06d7ba9
SHA-256: eb268325cdf40daad591dff105c7bc62e118b390301f48c841c78abbd09bad9b
Size: 14.69 kB - fence-agents-hpblade-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: db631024f982d6c69629be742fb45bfd
SHA-256: e548573470c69845228074b18261dedaa62a0336b9230f1cc272ed6f7091f806
Size: 14.40 kB - fence-agents-ibmblade-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 5b079f7932bc824eedebf180cdbf8d1d
SHA-256: 31f1e8266459134a28bcb0f1239aad0073562330c233cef3441b3c0d729f04fa
Size: 13.93 kB - fence-agents-ibm-powervs-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: d31fa283db3d7d2be68353f98854441f
SHA-256: c511ee4308f70614dd605227dd7cc5f471cdbf1c06b743bd9a6f8c46694009d5
Size: 14.97 kB - fence-agents-ibm-vpc-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: f1ee1669f8f2dd5fa3d4529b62d54994
SHA-256: 7429e1d329dc426446c712bf401d52319cf77337f78cdc3eb1f85e42f5c7599e
Size: 15.44 kB - fence-agents-ifmib-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: b5503fecc69f7fee7ef355e4ce88b7e8
SHA-256: cc44aa452a32d1edc0b8a066f6fac1869a411e2e26d6ef9e0863c3f75b88f8f4
Size: 14.49 kB - fence-agents-ilo2-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 769d0a5898787eac7cf5f24507be33c0
SHA-256: 8803f91b2f4034ea570c2779d495bd43d9191fc65b4db892dbaae2a0dc9e194c
Size: 16.46 kB - fence-agents-ilo-moonshot-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 7286f5479f4e5219a09b5733231b2fcf
SHA-256: 8000c99c116ab31c72f2e5b3820befd6750b0e998541e8c08ae8fc63d074325b
Size: 13.72 kB - fence-agents-ilo-mp-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 4a163625b0a8da07e7865225d9596d7b
SHA-256: 072baf1153b9411f42c8c081fa1939eb3af8fa83a20d11f61bbeeeb2ecb6c835
Size: 13.46 kB - fence-agents-ilo-ssh-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: a64c0196356e9c0f9c0848f95df5d250
SHA-256: 744b8c50ec618c28b6da1a8dc656d01c144acae47ca27398bdabcb9e6439f76d
Size: 20.06 kB - fence-agents-intelmodular-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 6af58c9fd2dfc0e7486fe3130571b7d6
SHA-256: a8ffa2032b9895d41b41f0183d1535003efad0e5eaa11da8e128242b74511adc
Size: 14.29 kB - fence-agents-ipdu-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 61951f47b122e6b94aca0ef4a4a9352f
SHA-256: b2d413491bef3554c271313909a7a1cd103c611c00ec74060d78ad2b2eeefc3e
Size: 14.52 kB - fence-agents-ipmilan-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 18f4d6ddaa49644fc87070dcf984fcf3
SHA-256: d25690c3240c36c617418aa12548554701fdda939edc6b5c32e55db3d0c34678
Size: 32.46 kB - fence-agents-kdump-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: a37c39c54a2f63c584f83faa40947d42
SHA-256: da961cf4b6e2986b472b2b87a09f4ce3e9f4e417612c02fcae4845d6be40b061
Size: 26.87 kB - fence-agents-kubevirt-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: 3a59aa1d22109fa91ed84b20f3e19bf9
SHA-256: 1ce0b8aac9a77273c2704a0c2efc15e3f7b3d93f6b132dc1692dcb15aa224de9
Size: 6.10 MB - fence-agents-mpath-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 3cdb490dc7bbc8e3a6b82528528b11b9
SHA-256: c1bd198caea6cc9e774ff85abff1d18b0029d7fd7242e0c5363afa1e27098773
Size: 16.88 kB - fence-agents-openstack-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: 5f5907a28dfb754ee351c799d77c0ad2
SHA-256: 54261ea08194086c905ca91a9edff528d83be18a36a2ad02b20bb95707c38df7
Size: 15.94 kB - fence-agents-redfish-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: c95c88394c6299089e3eb8517c3fd52a
SHA-256: f8506b4955d9ace8a82360fea418754f00c6dba77c922170e4d9cdb99d6aa378
Size: 14.84 kB - fence-agents-rhevm-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 6eb630ae58453087384dcbd13d9dbdc2
SHA-256: 2982ca185c051cea338c858cc6b650c9c8e43e61215ed202077d9d87e9c82c38
Size: 15.13 kB - fence-agents-rsa-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 27fcbc3a1f9776f6141c0071c1810d43
SHA-256: 95ee76fa69dc2fd0d42b9f5760c216657febecf9949ad68b026d15fa17cd781d
Size: 13.86 kB - fence-agents-rsb-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: f0f9feecab97a17cb761726b8e5a6b17
SHA-256: d4936e518d8300aab43900ddac262eb7c5ae3a758ce65a13dd9083f77c78e422
Size: 13.90 kB - fence-agents-sbd-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: eca9b95aa814ec6e80c4896d69f4bb95
SHA-256: 3e2c36e7b3d9a36a39830f9e36fd5e3902eb355d88d464662b848006e115b9ab
Size: 15.52 kB - fence-agents-scsi-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 2e4bd766e1bedb2f72d97837ee8cf80c
SHA-256: 4e4524845a6e3038d0071d4839fd1e08a02329d8cd3d3b1ec74731806102c6ca
Size: 19.29 kB - fence-agents-virsh-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 39104fa3a8abdf3b933710d2d7f54a41
SHA-256: 389385d7c46ccb5df899514ce31746fea82d7ff225e9fd208987174ec4735582
Size: 14.43 kB - fence-agents-vmware-rest-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: f9c03706adf94b7a850b54ea796938f7
SHA-256: 456780ac158c84f2b0b7c0ea1d47536a5efff74f005a4ca34b8901c7d76b66b0
Size: 15.15 kB - fence-agents-vmware-soap-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: c7bef3417dd849a14c8d9119d2418599
SHA-256: 3a30bfee28f08a1d268c0c87ebd0c17c191408ff98f518a502594bc9056f6970
Size: 16.03 kB - fence-agents-wti-4.10.0-76.el9_5.4.ML.1.noarch.rpm
MD5: 9a21d5181963660d6130d74376ef0004
SHA-256: b873bee539a97db9984686c14775b8a21cfec31c7c6accdd18997709f1cdf0dd
Size: 15.44 kB - fence-virt-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: 2e96b68ccb1e772515283276b5dcaf69
SHA-256: 9c93dbdd61afb052cddd554e69fa7039c852393e785c8ed9e5d12a761ec94bbc
Size: 38.67 kB - fence-virtd-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: 470b0adaf7aed02247fecacc15bffcb7
SHA-256: ed183ff6150f3c5b39286fb3588739dffff2fb5081756bc2fbbc3148c5148be7
Size: 52.03 kB - fence-virtd-cpg-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: 899565c6ffef69abab29936e2e6142bb
SHA-256: 2bfaf255cbcb64f162bcf45ad1d20a34987fb62013f5af38f5e7268cb33bf068
Size: 35.01 kB - fence-virtd-libvirt-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: d9efdc8b97873d93d5f31e0213ef47aa
SHA-256: 35da305e3c055cd381f8a0ac33f645de1895fd9133b998d1299491c7c7952984
Size: 31.53 kB - fence-virtd-multicast-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: f94e1676860664b00b26f46d24705c63
SHA-256: 0f5970db7251464cad6862e32fb95cc542d8a73da78cd02c6baddb2308f70af6
Size: 28.45 kB - fence-virtd-serial-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: c6cf2011e029dad64b0b91ba4cab0d87
SHA-256: 78d0afc1ab70d163d06a94112d9fb76518a75614ed4a23cdd93916d9e1f63a8c
Size: 31.98 kB - fence-virtd-tcp-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: 85b3a119826b901680c57f9720d51669
SHA-256: 85ce8f8306eb72c87eafb8388b78b65b408366f5a999b74c2c2c19e5107ead57
Size: 28.04 kB - ha-cloud-support-4.10.0-76.el9_5.4.ML.1.x86_64.rpm
MD5: c14fceda89920565a39800d83ff43b57
SHA-256: 2f4b640b8a5cdf1847889a363f84eddebc6c6a8003b3751e8f4804e9d6e4f2bd
Size: 48.74 MB