VulnSea

corosync vulnerabilities

CVEs whose affected-version data names the corosync package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

4 CVEsRSS

CVE-2026-81665High· 7.5
2w ago

A heap-based buffer overflow was found in Corosync's Totem Process Group (totempg) message reassembly

A heap-based buffer overflow was found in Corosync's Totem Process Group (totempg) message reassembly. When processing fragmented multicast messages, the buffer used to reassemble fragments lacks a runtime bounds check in release builds.…

TwilightRed Hat · corosyncEPSS 0.36%via NVD
CVE-2026-81666Medium· 6.5
2w ago

An integer overflow was found in Corosync's handling of membership commit token messages

An integer overflow was found in Corosync's handling of membership commit token messages. The length-validation check for these messages can be bypassed on 32-bit systems due to an integer overflow in the calculation of the expected mess…

SunlitRed Hat · corosyncEPSS 0.27%via NVD
CVE-2026-35092High· 7.5
5mo ago

A flaw was found in Corosync

A flaw was found in Corosync. An integer overflow vulnerability in Corosync's join message sanity validation allows a remote, unauthenticated attacker to send crafted User Datagram Protocol (UDP) packets. This can cause the service to cr…

Twilightcorosync · corosyncEPSS 0.99%via NVD
CVE-2026-35091High· 8.2
5mo ago

A flaw was found in Corosync

A flaw was found in Corosync. A remote unauthenticated attacker can exploit a wrong return value vulnerability in the Corosync membership commit token sanity check by sending a specially crafted User Datagram Protocol (UDP) packet. This …

Twilightcorosync · corosyncEPSS 0.87%via NVD
corosync vulnerabilities (CVEs) · VulnSea