Critical Security Advisory for Fedora 40: Booth CVE-2024-3049 Fix
Summary
Booth manages tickets which authorize cluster sites located
in geographically dispersed locations to run resources.
It facilitates support of geographically distributed
clustering in Pacemaker.
Update Information:
Security fix for CVE-2024-3049
Change Log
* Fri Jun 7 2024 Jan Friesse
References
[ 1 ] Bug #2272082 - CVE-2024-3049 booth: specially crafted hash can lead to invalid HMAC being accepted by Booth server
https://bugzilla.redhat.com/show_bug.cgi?id=2272082
Update Instructions
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-8a545718b1' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label