RHSA-2026:50655: Important: fence-agents security update
Important: fence-agents security update
Other sources
The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. Security Fix(es): httplib2: httplib2: Denial of Service via unbounded decompression of HTTP response bodies (CVE-2026-59939) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/fence-agentsto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-commonto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-computeto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-debugsourceto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ibm-powervsto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ibm-vpcto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-kdump-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-kubevirtto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-kubevirt-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-virshto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virt-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtdto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-cpgto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-cpg-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-libvirtto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-libvirt-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-multicastto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-multicast-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-serialto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-serial-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-tcpto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-virtd-tcp-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/ha-cloud-support-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-allto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-amt-wsto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-apcto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-apc-snmpto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-bladecenterto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-brocadeto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-cisco-mdsto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-cisco-ucsto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-drac5to a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-eaton-snmpto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-emersonto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-epsto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-heuristics-pingto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-hpbladeto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ibmbladeto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ifmibto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ilo-moonshotto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ilo-mpto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ilo-sshto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ilo2to a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-intelmodularto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ipduto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-ipmilanto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-kdumpto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-lparto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-mpathto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-nutanix-ahvto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-openstackto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-redfishto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-rhevmto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-rsato a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-rsbto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-sbdto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-scsito a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-vmware-restto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-vmware-soapto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-wtito a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/ha-cloud-supportto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-aliyunto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-awsto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-azure-armto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-gceto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
redhat/fence-agents-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27.aa - Upgrade
Upgrade
redhat/fence-agents-debugsourceto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27.aa - Upgrade
Upgrade
redhat/fence-agents-kdump-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27.aa - Upgrade
Upgrade
redhat/fence-agents-kubevirtto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27.aa - Upgrade
Upgrade
redhat/fence-agents-kubevirt-debuginfoto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27.aa - Upgrade
Upgrade
redhat/fence-agents-allto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27.aa - Upgrade
Upgrade
redhat/fence-agents-kdumpto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27.aa - Upgrade
Upgrade
redhat/fence-agents-redfishto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27.aa - Upgrade
Upgrade
redhat/fence-agents-zvmto a version that resolves this vulnerability.Fixed in 4.10.0-62.el9_4.27 - Upgrade
Upgrade
httplib2to a version that resolves this vulnerability.Patch CVE-2026-59939
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:50655?
The severity of RHSA-2026:50655 is classified as high with a score of 7.
What security issues does RHSA-2026:50655 address?
RHSA-2026:50655 addresses security vulnerabilities related to remote power management scripts for cluster devices.
How do I fix RHSA-2026:50655?
To fix RHSA-2026:50655, you need to update the relevant fence-agents packages to the latest version provided by Red Hat.
Which packages are affected by RHSA-2026:50655?
Affected packages under RHSA-2026:50655 include fence-agents, fence-agents-debuginfo, and fence-agents-all among others.
When was RHSA-2026:50655 published?
RHSA-2026:50655 was published on August 5, 2026.