{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-10T07:24:22.381","vulnerabilities":[{"cve":{"id":"CVE-2026-35092","sourceIdentifier":"secalert@redhat.com","published":"2026-04-01T14:16:57.237","lastModified":"2026-05-06T21:16:00.583","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A flaw was found in Corosync. An integer overflow vulnerability in Corosync's join message sanity validation allows a remote, unauthenticated attacker to send crafted User Datagram Protocol (UDP) packets. This can cause the service to crash, leading to a denial of service. This vulnerability specifically affects Corosync deployments configured to use totemudp/totemudpu mode."}],"metrics":{"cvssMetricV31":[{"source":"secalert@redhat.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":3.6}]},"weaknesses":[{"source":"secalert@redhat.com","type":"Secondary","description":[{"lang":"en","value":"CWE-190"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:corosync:corosync:-:*:*:*:*:*:*:*","matchCriteriaId":"5008766D-B12C-48F2-A70A-2344860259C2"},{"vulnerable":true,"criteria":"cpe:2.3:a:redhat:openshift:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5F7E2F04-474D-4196-9CE8-242642990A16"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"142AD0DD-4CF3-4D74-9442-459CE3347E3A"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*","matchCriteriaId":"F4CFF558-3C47-480D-A2F0-BABF26042943"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*","matchCriteriaId":"7F6FB57C-2BC7-487C-96DD-132683AEB35D"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:*","matchCriteriaId":"D65C2163-CFC2-4ABB-8F4E-CB09CEBD006C"}]}]}],"references":[{"url":"https://access.redhat.com/errata/RHSA-2026:13644","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:13657","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:13673","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:14205","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:14210","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:14211","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:14212","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:14213","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:14214","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:14215","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2026:14216","source":"secalert@redhat.com"},{"url":"https://access.redhat.com/security/cve/CVE-2026-35092","source":"secalert@redhat.com","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2453169","source":"secalert@redhat.com","tags":["Exploit","Third Party Advisory"]},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2453814","source":"secalert@redhat.com","tags":["Issue Tracking","Third Party Advisory"]}]}}]}