Security News

Cybersecurity news aggregator

🔄
HIGH Updates Red Hat Errata

RHSA-2026:50655: Important: fence-agents security update

A Denial of Service vulnerability (CVE-2026-59939, CVSS 7.5 HIGH) exists in the `httplib2` library used by `fence-agents`, allowing an attacker to cause resource exhaustion via unbounded decompression of HTTP response bodies. The vulnerability affects `httplib2` versions prior to 0.32.0. The fix requires updating the `fence-agents` package for Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions, which incorporates the patched library.
Read Full Article →

Red Hat Product Errata RHSA-2026:50655 - Security Advisory Issued: 2026-08-05 Updated: 2026-08-05 RHSA-2026:50655 - Security Advisory Overview Updated Packages Synopsis Important: fence-agents security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for fence-agents is now available for Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. Security Fix(es): httplib2: httplib2: Denial of Service via unbounded decompression of HTTP response bodies (CVE-2026-59939) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server - AUS 9.4 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 ppc64le Red Hat Enterprise Linux High Availability for Power LE - Update Services for SAP Solutions 9.4 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 x86_64 Red Hat Enterprise Linux High Availability for x86_64 - Update Services for SAP Solutions 9.4 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4 s390x Red Hat Enterprise Linux High Availability for ARM 64 - 4 years of updates 9.4 aarch64 Red Hat Enterprise Linux High Availability for IBM z Systems - 4 years of updates 9.4 s390x Red Hat Enterprise Linux Resilient Storage for x86_64 - 4 years of updates 9.4 x86_64 Red Hat Enterprise Linux Resilient Storage for Power, little endian - 4 years of updates 9.4 ppc64le Red Hat Enterprise Linux Resilient Storage for IBM z Systems - 4 years of updates 9.4 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.4 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.4 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.4 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.4 s390x Red Hat Enterprise Linux High Availability for ARM 64 - Extended Life Cycle 9.4 aarch64 Red Hat Enterprise Linux High Availability for Power, little endian - Extended Life Cycle 9.4 ppc64le Red Hat Enterprise Linux High Availability for IBM z Systems - Extended Life Cycle 9.4 s390x Red Hat Enterprise Linux High Availability for x86_64 - Extended Life Cycle 9.4 x86_64 Red Hat Enterprise Linux Resilient Storage for Power, little endian - Extended Life Cycle 9.4 ppc64le Red Hat Enterprise Linux Resilient Storage for IBM z Systems - Extended Life Cycle 9.4 s390x Red Hat Enterprise Linux Resilient Storage for x86_64 - Extended Life Cycle 9.4 x86_64 Fixes BZ - 2498212 - CVE-2026-59939 httplib2: httplib2: Denial of Service via unbounded decompression of HTTP response bodies CVEs CVE-2026-59939 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - AUS 9.4 SRPM fence-agents-4.10.0-62.el9_4.27.src.rpm SHA-256: 3dc9682eaeb8cfe6699385829477eb0683b1973a3b71175675342e7186e81bc8 x86_64 fence-agents-common-4.10.0-62.el9_4.27.noarch.rpm SHA-256: b65cb040259623c478910e07a9c617090055d7db8b18d4307e7fe1ab9ab297d6 fence-agents-compute-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 6d54a49ef903b65eba7e47f8b18993ea4735efa8190e525ab3b18b96bc7beb78 fence-agents-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 7d6dbfcd16ef200e247c3fea6cce509dee1893be14d8b9360dfedae049095d74 fence-agents-debugsource-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 788449b9a327d34b8922c03b2d94079fff87f404297f5a54e884235a6c4f6eff fence-agents-ibm-powervs-4.10.0-62.el9_4.27.noarch.rpm SHA-256: e547de10cb8c19ba5cd5dafa814b9f71cac6dda506f777c9926190e447d8b800 fence-agents-ibm-vpc-4.10.0-62.el9_4.27.noarch.rpm SHA-256: fce3e0ceca4d748ff410e2e3347ec1a18197cada08badb925fbe8d1222c7250e fence-agents-kdump-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: b5a720791c6ed6fb42e001620417113d0d6e87f4363f37583fa5b557ff490fdf fence-agents-kubevirt-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 6f24a6eb2f9e4fa974a5c296a0c200a909384e9bfa08b5d3f943fa8d924370b2 fence-agents-kubevirt-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 38fc61a5c10a0de019c78c83b0d55f18156aa7223bc515f695006f514630c145 fence-agents-virsh-4.10.0-62.el9_4.27.noarch.rpm SHA-256: 5f07d878dc5e675f3689e4f8f3fc66a99f5f334902b2ce03c528993fcc964421 fence-virt-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 2627e3fb9ad867d9558a289ebfcb99940b641847d4d6fec3eea3e1b08e5595fa fence-virt-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 079308ec496d7441cbf8dd059b8452cd663d5e01e01e833203ccd64edb518b2e fence-virtd-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 2ab3a124a7efacaf7bb3a90b03133e74e990677f069c0c77c811e70d98a45e07 fence-virtd-cpg-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 916336e0515d97dcddfa1199fe4abcd1fd2ba000e8f0ea4d7d696f5c3ebe7054 fence-virtd-cpg-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 1b81e1247dcad1fd7dc7f681dfbc2e0677b4fe06706e95f397e3f23bdd4fffe4 fence-virtd-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: e40eae7096bb8c1869f42ee9bd2a4dd47170cb49c46128ec8c0fb2c6b8f806b1 fence-virtd-libvirt-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 8f1c43983f9c15a60a7a264bdca35f4706214d41b1356359e712f9f7e532a55f fence-virtd-libvirt-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 426638cb913a637849f10be1f9a739a5b41f567bb94a74bc7086be5ea976dab6 fence-virtd-multicast-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: d0cd43955b4137aebb614cb43c203793e318724621f3a1611ceec55401b62971 fence-virtd-multicast-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 271225eba8eda7d90266c0094e2334350dd13b27c4368b8104e8d88355aab22a fence-virtd-serial-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: a115155df60fb3cedfb2d2e5fa6a6a322febc8b5002de633a900a6614ead8269 fence-virtd-serial-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: c48bdb7fa6b93ddbcaa25092cc5527e062463c9fdab5ed872d602813aa846515 fence-virtd-tcp-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: 816a24766b2366f97dc3ce5ddef1b120ea6e705851ef2b4f119059ca8feb33a8 fence-virtd-tcp-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: ce879b77cb8a073ae9c375c5f4876a8d2d591f08f06703f8da7ddb90b9a5ccc9 ha-cloud-support-debuginfo-4.10.0-62.el9_4.27.x86_64.rpm SHA-256: f8104768db702e04aa55de96378604fad6395fa09873b443e46e47e51273a771 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 SRPM fence-agents-4.10.0-62.el9_4.27.src.rpm SHA-256: 3dc9682eaeb8cfe6699385829477eb0683b1973a3b71175675342e7186e81bc8 ppc64le fence-agents-common-4.10.0-62.el9_4.27.noarch.rpm SHA-256: b65cb040259623c478910e07a9c617090055d7db8b18d4307e7fe1ab9ab297d6 fence-agents-compute-4.10.0-62.el9_4.27.ppc64le.rpm SHA-256: 8625891e8ac16d86f063c2a32ce4b59eb16b7b252f031979dc0522a3338e7683 fence-agents-debuginfo-4.10.0-62.el9_4.27.ppc64le.rpm SHA-256: b07039d426fb41305ac51327cabe14c76823798cf2a8967cfc233b254f59659d fence-agents-debugsource-4.10.0-62.el9_4.27.ppc64le.rpm SHA-256: 7fb1d67caf81ad241218c76015cbaed6e055f0ce0743d55a6993f15886923c70 fence-agents-ibm-powervs-4.10.0-62.el9_4.27.noarch.rpm SHA-256: e547de10cb8c19ba5cd5dafa814b9f71cac6dda506f777c9926190e447d8b800 fence-agents-ibm-vpc-4.10.0-62.el9_4.27.noarch.rpm SHA-256: fce3e0ceca4d748ff410e2e3347ec1a18197cada08badb925fbe8d1222c7250e fence-agents-kdump-debuginfo-4.10.0-62.el9_4.27.ppc64le.rpm SHA-256: 7126abe4715f364c98098bd908e119d5a708ddd7cb3890c86c0f067bad222f8b fence-agents-kubevirt-4.10.0-62.el9_4.27.ppc64le.rpm SHA-256: ebe0cad44eb60e0038e48b3b7f3928aa0c7170b0cc63ff3ef66a02afe13aa0a2 fence-agents-kubevirt-debuginfo-4.10.0-62.el9_4.27.ppc64le.rpm SHA-256: 872a0bc62a2f4294ff185f862f0400f859674b7ff7e8f63266a57ce67de1cd9f fence-agents-virsh-4.10.0-62.el9_4.27.noarch.rpm SHA-256: 5f07d878dc5e675f3689e4f8f3fc66a99f5f334902b2ce03c528993fcc964421 Red Hat Enterprise Linux High Availability for Power LE - Update Services for SAP Solutions 9.4 SRPM ppc64le fence-agents-all-4.10.0-62.el9_4.27.ppc64le.rpm SHA-256: 01a8d15c7ba43691d7168407f0cf0f74ec7b2e74a748485b69458bf70696fa7d fence-agents-amt-ws-4.10.0-62.el9_4.27.noarch.rpm SHA-256: 933bc9dba65363897f1f2281d02401139c4aaaa990046b0efa9e1d4997f9c41c fence-agents-apc-4.10.0-62.el9_4.27.noarch.rpm SHA-256: 15d1cb1bdce0e93c24ad1a4d0b1ab2d506c47a2ba7e530e632e7026347ee7996 fence-agents-apc-snmp-4.10.0-62.el9_4.27.noarch.rpm SHA-256: fa68aee1bd5ced162023015deb5a4d70b77f204711e362b33b1c042cc58ea767 fence-agents-bladecenter-4.10.0-62.el9_4.27.noarch.rpm SHA-256: 7cca894a99b48b657d04737a1b6290fec69af25cc50609b82a7c62e2fc703f8c fence-agents-brocade-4.10.0-62.el9_4.27.noarch.rpm SHA-256: e84e9699f736f1a34eaa4d58ac2706aab65e6a1d8dab638c231e46c13ef07138 fence-agents-cisco-mds-4.10.0-62.el9_4.27.noarch.rpm SHA-256: 63a31fae9272d4637cd2241c8c969cf077596f097875a15639381a6d4051b990 fence-agents-cisco-ucs-4.10.0-62.el9_4.27.noarch.rpm SHA-256: 88e66e11346beb1171ce0e3308f801b2759e141282ffb8577f610e636cdac92e fence-agents-debuginfo-4.10.0-62.el9_4.27.ppc64le.rpm SHA-256: b07039d426fb41305ac51327cabe14c76823798cf2a8967cfc233b254f59659d fence-agents-debugsource-4.10.0-62.el9_4.27.ppc64le.rpm SHA-256: 7fb1d67caf81ad241218c76015cbaed6e055f0ce0743d55a6993f15886923c70 fence-agents-drac5-4.10.0-62.e

Share this article