Red Hat Product Errata RHSA-2026:22969 - Security Advisory Issued: 2026-06-03 Updated: 2026-06-03 RHSA-2026:22969 - Security Advisory Overview Updated Packages Synopsis Important: fence-agents security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for fence-agents is now available for Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. Security Fix(es): pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion (CVE-2026-30922) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server - AUS 9.4 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 ppc64le Red Hat Enterprise Linux High Availability for Power LE - Update Services for SAP Solutions 9.4 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 x86_64 Red Hat Enterprise Linux High Availability for x86_64 - Update Services for SAP Solutions 9.4 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4 s390x Red Hat Enterprise Linux High Availability for ARM 64 - 4 years of updates 9.4 aarch64 Red Hat Enterprise Linux High Availability for IBM z Systems - 4 years of updates 9.4 s390x Red Hat Enterprise Linux Resilient Storage for x86_64 - 4 years of updates 9.4 x86_64 Red Hat Enterprise Linux Resilient Storage for Power, little endian - 4 years of updates 9.4 ppc64le Red Hat Enterprise Linux Resilient Storage for IBM z Systems - 4 years of updates 9.4 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.4 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.4 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.4 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.4 s390x Red Hat Enterprise Linux High Availability for ARM 64 - Extended Life Cycle 9.4 aarch64 Red Hat Enterprise Linux High Availability for Power, little endian - Extended Life Cycle 9.4 ppc64le Red Hat Enterprise Linux High Availability for IBM z Systems - Extended Life Cycle 9.4 s390x Red Hat Enterprise Linux High Availability for x86_64 - Extended Life Cycle 9.4 x86_64 Red Hat Enterprise Linux Resilient Storage for Power, little endian - Extended Life Cycle 9.4 ppc64le Red Hat Enterprise Linux Resilient Storage for IBM z Systems - Extended Life Cycle 9.4 s390x Red Hat Enterprise Linux Resilient Storage for x86_64 - Extended Life Cycle 9.4 x86_64 Fixes BZ - 2448553 - CVE-2026-30922 pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion CVEs CVE-2026-30922 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - AUS 9.4 SRPM fence-agents-4.10.0-62.el9_4.25.src.rpm SHA-256: 088585f6dba93f514642b5640ea011d7327d9f6bfecdf7e8dd2d77b1d7d5dd3a x86_64 fence-agents-common-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 035f22f8c9d0c38a935579b9bf5d1341dce83e1f51c02803c61da957c9f8b0ed fence-agents-compute-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 28a56cfa991aa07dc56b123ff5ea3fce5db1aba4fb2b21e252be2e39d371819d fence-agents-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 9054edc390e4bc09b41026705e2c34aa5217f881eb0398f767ae71878a80ddbd fence-agents-debugsource-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: b077839370b07485ae30a12e58887fcad16f86d93c29de9de60dde2dc14c3a14 fence-agents-ibm-powervs-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 0c5649805d456412cbd395e832425dbfc937e90516da51b3ff1d19ea21568a0c fence-agents-ibm-vpc-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 3d3e71b08f9235287bd718cf74c28959e8335def7ff56a78d78cb195c01b1173 fence-agents-kdump-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 311eea58431d4c4c2c8f920bf712c82b79b09a7afff8c5adc0a1fa9f98e30f73 fence-agents-kubevirt-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: c8e8f302714363caaaa558ed02c3e4d2b1333e2fbbcc8f06d4c38eaade129ef0 fence-agents-kubevirt-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 38fd7062dee82031518d6d323f000029c0929c7ce1a11236eb8ce4f58da3aa33 fence-agents-virsh-4.10.0-62.el9_4.25.noarch.rpm SHA-256: ff2bc7708b8f3751f617dfd21ca57f2e448e6961c28f99ea0fb93807ad207fab fence-virt-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: f3c90d09191066e98ffb9bd7dcae1e920f122d9089b65ad74e2229b35c16f7ef fence-virt-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: b09ad00f17b5950bff7abe277a16c83ff2769a52fcce0bf846eff0be8716669b fence-virtd-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 3903428ee8c80c000458955ac6f3632c8e12e741d98592a9a88cd82ee785d00c fence-virtd-cpg-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 5200c7882ac86b354b3d14d0b0e3f4a8ded17e00db161bb2f1c9c041b26c0e0e fence-virtd-cpg-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: e1ee21a08f5349c75d21c0e323a8873d2f239d75826a4876e8e89cbd88eebf21 fence-virtd-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 10d6d08b54b110db3ff77c9f0b207539187696b1500525be9de18fff207bb3fc fence-virtd-libvirt-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 8f768da5642f7efcbf20fca7a9572b883d3f014e5382ed4a4532374bda150a48 fence-virtd-libvirt-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 5cc714164f842674fba92c4a9cd6bfcc094da7b6482fd1ac226eb79366849021 fence-virtd-multicast-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 419dc5e5f60fdc101a320b5fb7ff59c0f65d81d888137207a9c9414c0e793a6c fence-virtd-multicast-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 018ac8f4a2be8d3b124960f8b70d70b512822007bde31edefb67a9e96af1a8c4 fence-virtd-serial-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 75eb0c07b76c2f1c5024be486b106b2de80d8fecb72f63ad0e1d0e479e33f6ec fence-virtd-serial-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 0798c3e9edbd1c7671029e23e98db6bea821af03ea6070a1fc28d0059f64d70e fence-virtd-tcp-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: a43980e16ba954dbf2831d7ce141d7c2affcb2e2834c8139df9cbb30944e24c2 fence-virtd-tcp-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: fceb4888d62b849282ff81f671506fd217068e17cc6aba1200156e2f709bd91f ha-cloud-support-debuginfo-4.10.0-62.el9_4.25.x86_64.rpm SHA-256: 37a10c90b1bc81519f71acd0602528aa7a81f77d8dda8586f0a9187ef7c67264 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 SRPM fence-agents-4.10.0-62.el9_4.25.src.rpm SHA-256: 088585f6dba93f514642b5640ea011d7327d9f6bfecdf7e8dd2d77b1d7d5dd3a ppc64le fence-agents-common-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 035f22f8c9d0c38a935579b9bf5d1341dce83e1f51c02803c61da957c9f8b0ed fence-agents-compute-4.10.0-62.el9_4.25.ppc64le.rpm SHA-256: f085f5a9004f13cf7552c0094e2d00a6756f191e6106cf9443eb31d8f3032e6c fence-agents-debuginfo-4.10.0-62.el9_4.25.ppc64le.rpm SHA-256: dcf4625de50f0f7815fd9c2388ffe14c28887e926968f1c18b9a151ebba47745 fence-agents-debugsource-4.10.0-62.el9_4.25.ppc64le.rpm SHA-256: 3f9ac0abe859cc6c37fc6f936c12c61ee7075034fa737e3ca71999ade987701a fence-agents-ibm-powervs-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 0c5649805d456412cbd395e832425dbfc937e90516da51b3ff1d19ea21568a0c fence-agents-ibm-vpc-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 3d3e71b08f9235287bd718cf74c28959e8335def7ff56a78d78cb195c01b1173 fence-agents-kdump-debuginfo-4.10.0-62.el9_4.25.ppc64le.rpm SHA-256: 37058300cffca629c81ab818eb487af5d8135b1028a9993650056c9b8e721e05 fence-agents-kubevirt-4.10.0-62.el9_4.25.ppc64le.rpm SHA-256: 77cc4cab05cf69f0542bad604627aa6d0b5d0529467dadae1f2970bd35f40689 fence-agents-kubevirt-debuginfo-4.10.0-62.el9_4.25.ppc64le.rpm SHA-256: b6772093bffd5b990e40f9b347f2b3cee0005d894fe438d38b7eebd2974721ba fence-agents-virsh-4.10.0-62.el9_4.25.noarch.rpm SHA-256: ff2bc7708b8f3751f617dfd21ca57f2e448e6961c28f99ea0fb93807ad207fab Red Hat Enterprise Linux High Availability for Power LE - Update Services for SAP Solutions 9.4 SRPM ppc64le fence-agents-all-4.10.0-62.el9_4.25.ppc64le.rpm SHA-256: 46b9e910c504226e159a3f641e934acf68db4276a4242ac45010ff66c649de87 fence-agents-amt-ws-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 628e162a8cd583a62a5dacaa574e63ab37c6e0b24dce1701d29009f48b951703 fence-agents-apc-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 11ffdbdce7b876cae3d7beb26352b39c94ee8003fa3b2868bb213cd2d247aacc fence-agents-apc-snmp-4.10.0-62.el9_4.25.noarch.rpm SHA-256: bdce03dec37fbdad545e194639759402ff189f2538ca544a637e9e1c730aad11 fence-agents-bladecenter-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 5616fbd0a392f255e9d17d42e0060ca7eab2087b9c81933464de0b53fc2b389c fence-agents-brocade-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 0b5cf29a3354ecf0bdb2c55955b8076c96c6787f14bebb1451cdce9f1a64800f fence-agents-cisco-mds-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 71cbcf98d3a713c5025e50cb778ba6fc34096bf27274f15ad556a3d55cecb61a fence-agents-cisco-ucs-4.10.0-62.el9_4.25.noarch.rpm SHA-256: c7ae8ea41a156d954d4ad2ca571bb03e93024642f6317ed4f331e10065ec504d fence-agents-debuginfo-4.10.0-62.el9_4.25.ppc64le.rpm SHA-256: dcf4625de50f0f7815fd9c2388ffe14c28887e926968f1c18b9a151ebba47745 fence-agents-debugsource-4.10.0-62.el9_4.25.ppc64le.rpm SHA-256: 3f9ac0abe859cc6c37fc6f936c12c61ee7075034fa737e3ca71999ade987701a fence-agents-drac5-4.10.0-62.el9_4.25.noarch.rpm SHA-256: 831c2372ca
The pyasn1 library used by Red Hat fence-agents is vulnerable to a denial-of-service attack via unbounded recursion (CVE-2026-30922, CVSS 7.5 High). The vulnerability affects pyasn1 versions prior to 0.6.3, and the fix requires upgrading the library to version 0.6.3.