Red Hat Product Errata RHSA-2026:41044 - Security Advisory Issued: 2026-07-16 Updated: 2026-07-16 RHSA-2026:41044 - Security Advisory Overview Updated Packages Synopsis Important: pacemaker security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for pacemaker is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures. Security Fix(es): pacemaker: Pacemaker: Denial of Service via integer overflow in remote message decompression (CVE-2026-10649) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux High Availability for Power LE - Update Services for SAP Solutions 9.2 ppc64le Red Hat Enterprise Linux High Availability for x86_64 - Update Services for SAP Solutions 9.2 x86_64 Red Hat Enterprise Linux High Availability for ARM 64 - 4 years of updates 9.2 aarch64 Red Hat Enterprise Linux High Availability for IBM z Systems - 4 years of updates 9.2 s390x Red Hat Enterprise Linux Resilient Storage for x86_64 - 4 years of updates 9.2 x86_64 Red Hat Enterprise Linux Resilient Storage for Power, little endian - 4 years of updates 9.2 ppc64le Red Hat Enterprise Linux Resilient Storage for IBM z Systems - 4 years of updates 9.2 s390x Red Hat Enterprise Linux High Availability for x86_64 - Advanced Update Support 9.2 x86_64 Red Hat Enterprise Linux High Availability for ARM 64 - Extended Life Cycle 9.2 aarch64 Red Hat Enterprise Linux High Availability for Power, little endian - Extended Life Cycle 9.2 ppc64le Red Hat Enterprise Linux High Availability for IBM z Systems - Extended Life Cycle 9.2 s390x Red Hat Enterprise Linux High Availability for x86_64 - Extended Life Cycle 9.2 x86_64 Red Hat Enterprise Linux Resilient Storage for Power, little endian - Extended Life Cycle 9.2 ppc64le Red Hat Enterprise Linux Resilient Storage for IBM z Systems - Extended Life Cycle 9.2 s390x Red Hat Enterprise Linux Resilient Storage for x86_64 - Extended Life Cycle 9.2 x86_64 Fixes BZ - 2462817 - CVE-2026-10649 pacemaker: Pacemaker: Denial of Service via integer overflow in remote message decompression CVEs CVE-2026-10649 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux High Availability for Power LE - Update Services for SAP Solutions 9.2 SRPM pacemaker-2.1.5-9.el9_2.7.src.rpm SHA-256: ac337f8af9153fc71992f5794850bc043d318d49f06ab5078f3d6f8f6a6733f9 ppc64le pacemaker-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: 54d6d4b481679ec99119dbb6b684228793e33d34a16c244a66106ed22b5114a2 pacemaker-cli-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: bd5de70a013e34799ef8a1091ed9481ba6ab23b78bdfa868b69a3f244f87b513 pacemaker-cli-debuginfo-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: ba3a781d10277b9b8495bb24318ed87f212c40d5c6da3953ffc692c81ebc111e pacemaker-cluster-libs-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: 13880d27cc6e9d4be8faab5302b0b71853768ff92f9a1c79604949a449ea20d4 pacemaker-cluster-libs-debuginfo-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: 4549cff01c9ac61104f70154bdf9fd994d195809fffa57a3791f4719e539b07e pacemaker-cts-2.1.5-9.el9_2.7.noarch.rpm SHA-256: a60dcf3e30a7a4842fabc3b46f85f98d2ea20829ad59064c3e9ab3ade828f93d pacemaker-debuginfo-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: 6317041cf5bd0350025133fa9c4ab6575343d863cb38fd9b23cfe757a15a3854 pacemaker-debugsource-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: a322ba68ab806b6cbfe98256694d9e0517e12ed03eb069129f72a3144d150fc3 pacemaker-doc-2.1.5-9.el9_2.7.noarch.rpm SHA-256: a969962dc7a3db989ee2fac81016c363990f1cae549d8a4e67b3dd7a44f3d059 pacemaker-libs-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: 961e4186ca21f251346b03b2b4e684f3e970b898074fa9ad750b2f51ddd0ef04 pacemaker-libs-debuginfo-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: 934ff4e2196c902eeb834fa93850d96e922b354c4ac84488b587949dde3cbca4 pacemaker-libs-devel-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: a5178d9f788d4980cb0d39e60160568a4dae155a8ff1da10dbab1a29a7dbcf7e pacemaker-nagios-plugins-metadata-2.1.5-9.el9_2.7.noarch.rpm SHA-256: 7e38d8bd3b6031459c3dc5bf60f9e174180172b52a70d5ce2fd21ed04919caf0 pacemaker-remote-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: 7d224a653b94f9dcf38bb6f8f2a755500b82da28337c00e538c862d23ec2ae3b pacemaker-remote-debuginfo-2.1.5-9.el9_2.7.ppc64le.rpm SHA-256: 94a07da08cc60444e0974ee0bd9dea3c1c28e1bffdc96585623f0f9d6da42463 pacemaker-schemas-2.1.5-9.el9_2.7.noarch.rpm SHA-256: 07fa9d02fd619b2f69a9c24f11783cef06b10b19244e237a30d2ddb7927a2f0a Red Hat Enterprise Linux High Availability for x86_64 - Update Services for SAP Solutions 9.2 SRPM pacemaker-2.1.5-9.el9_2.7.src.rpm SHA-256: ac337f8af9153fc71992f5794850bc043d318d49f06ab5078f3d6f8f6a6733f9 x86_64 pacemaker-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: a2fa75468bbe7356691b846323160e77ae7153c85cad793092472ad7b3937ddc pacemaker-cli-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: 600e73a98a73c3090a93add4762835667595c421582bd9a2bcc7416ca6cc2368 pacemaker-cli-debuginfo-2.1.5-9.el9_2.7.i686.rpm SHA-256: 65033f2bc73ed64a3010483401662ff1a9524af5867df81bf7205593e10f09c5 pacemaker-cli-debuginfo-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: a63cf5364c841dfeb3551f3f240950af07eb028e298cbfbed4df92681f0bf1b0 pacemaker-cluster-libs-2.1.5-9.el9_2.7.i686.rpm SHA-256: cf6dc118dac22986e5dc9651866ebe43cebb6a8eb022a3d6754997041238c74a pacemaker-cluster-libs-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: dd8782fdfe92efe0198827cb46f09d8c545f053afa098e94fe7d174a9947f414 pacemaker-cluster-libs-debuginfo-2.1.5-9.el9_2.7.i686.rpm SHA-256: 67db479287a2730fbe23043ce4ae2ae34816471c1f6296944a0e1d08c2c71847 pacemaker-cluster-libs-debuginfo-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: 913797f78552ce91c9808b9babf5e3bc51f20e1739c2d8db4e4d8178cb079483 pacemaker-cts-2.1.5-9.el9_2.7.noarch.rpm SHA-256: a60dcf3e30a7a4842fabc3b46f85f98d2ea20829ad59064c3e9ab3ade828f93d pacemaker-debuginfo-2.1.5-9.el9_2.7.i686.rpm SHA-256: 328a654033865727199f112a37ee63878bdfb43eda198751fda697c7b0170ef2 pacemaker-debuginfo-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: df68ff8f2b78f788d2307d09c22df009becee5953aa6fda0769339a5a1eb6f5e pacemaker-debugsource-2.1.5-9.el9_2.7.i686.rpm SHA-256: 5298e72d40f5269cd4f9f6930f191607ce88a7d8aa0da90415b1c804b0b7b97d pacemaker-debugsource-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: bf741a01f34489c1dc99503f3cf89a21166e62ee494cd152eb92bebb1c59efff pacemaker-doc-2.1.5-9.el9_2.7.noarch.rpm SHA-256: a969962dc7a3db989ee2fac81016c363990f1cae549d8a4e67b3dd7a44f3d059 pacemaker-libs-2.1.5-9.el9_2.7.i686.rpm SHA-256: f128f90651c197c5e41497598c11bb936ba7fea364cf53250dfe22eda720ac21 pacemaker-libs-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: ad57943aceafd1de1a04695bbe76518a023520dcfd5a31a92fcd8f00a8c278c7 pacemaker-libs-debuginfo-2.1.5-9.el9_2.7.i686.rpm SHA-256: 01aae3502ca73a7629a3e454879d51f9c4df7bb03c2783e8087f3491b7305782 pacemaker-libs-debuginfo-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: f500eb14efbfc8858226ce46ba4ebc8e43851d11bc2e5d582f49e45dfff3ab4e pacemaker-libs-devel-2.1.5-9.el9_2.7.i686.rpm SHA-256: 41479abd09edd91d36931b8748529d72029c1c65ff6e72c6243e076ae0c7f2bc pacemaker-libs-devel-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: d3e00b3907a2d1cd9b1ccb17749b3e30ebbcf5c052b6ffa45b0527e3cb60d3b5 pacemaker-nagios-plugins-metadata-2.1.5-9.el9_2.7.noarch.rpm SHA-256: 7e38d8bd3b6031459c3dc5bf60f9e174180172b52a70d5ce2fd21ed04919caf0 pacemaker-remote-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: d49d6c3c4531475e522e9b9bb412ec070b0eb24a46a46a2277ca42e3f3ce43a0 pacemaker-remote-debuginfo-2.1.5-9.el9_2.7.i686.rpm SHA-256: 3ba4be389360359a2ba6c4ee3e6856c4518bec49794ed1427f93ddde9e4d795f pacemaker-remote-debuginfo-2.1.5-9.el9_2.7.x86_64.rpm SHA-256: 61426ad7c7d44a859067f8841da0c0e1a823dd2c341be86d38253a66338e9a3f pacemaker-schemas-2.1.5-9.el9_2.7.noarch.rpm SHA-256: 07fa9d02fd619b2f69a9c24f11783cef06b10b19244e237a30d2ddb7927a2f0a Red Hat Enterprise Linux High Availability for ARM 64 - 4 years of updates 9.2 SRPM pacemaker-2.1.5-9.el9_2.7.src.rpm SHA-256: ac337f8af9153fc71992f5794850bc043d318d49f06ab5078f3d6f8f6a6733f9 aarch64 pacemaker-2.1.5-9.el9_2.7.aarch64.rpm SHA-256: 19762f7125bff8bb925457def0d6900707cbb762bdf215ca1c0b0551f5035dd7 pacemaker-cli-2.1.5-9.el9_2.7.aarch64.rpm SHA-256: f2a0a83caf5a5571951a164c9465f9d1e380334c2656a298ee0935491ac19c94 pacemaker-cli-debuginfo-2.1.5-9.el9_2.7.aarch64.rpm SHA-256: 7f04ded5baba82519c21bfabc29a9ca0b2739bdb8e5e65f208d5de66695f4f3e pacemaker-cluster-libs-2.1.5-9.el9_2.7.aarch64.rpm SHA-256: 509515e3a6a5dcc2b6c0c02f2f59fd1bc481ad309d8087a98abdb1c5405577c8 pacemaker-cluster-libs-debuginfo-2.1.5-9.el9_2.7.aarch64.rpm SHA-256: bcf3eecdbfb1c051f75e0b4ddfe124f74cad2f726ccd0d68739125ac1f59f2d5 pacemaker-cts-2.1.5-9.el9_2.7.noarch.rpm SHA-256: a60dcf3e30a7a4842fabc3b46f85f98d2ea20829ad59064c3e9ab3ade828f93d pacemaker-debuginfo-2.1.5-9.el9_2.7.aarch64.rpm SHA-256: 093bc3d17c35bd595c4d0d1db321da6156705308b580a80f5e2425e59cf32c2a pacemaker-debugsource-2.1.5-9.el9_2.7.aarch64.rpm SHA-256: 7672abbcd97923cc1fa1b032cb9c75c7e1941af890e7a69060adf43b6f6bd84a pacemaker-doc-2.1.5-9.el9_2.7.noarch.rpm SHA-256: a969962dc7a3db989ee2fac81016c363990f1cae549d8a4e67b3dd7a44f3d059 pacemaker-libs-2.1.5-9.el9_2.7.aarch64.rpm SHA-256: 658ce32eb5e2cb37016433283751715fc4a175263a41afbebf869067c0b7ef
A critical integer overflow vulnerability (CVE-2026-10649, CVSS 8.6 HIGH) in Pacemaker's remote message decompression can lead to a denial of service condition. This security update addresses the flaw for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions across multiple architectures. Administrators should apply the referenced Red Hat patch to affected systems.