CVE-2026-35092
Corosync: corosync: denial of service via integer overflow in join message validation
CVSS Score
7.5
EPSS Score
0.4%
EPSS Percentile
59th
A flaw was found in Corosync. An integer overflow vulnerability in Corosync's join message sanity validation allows a remote, unauthenticated attacker to send crafted User Datagram Protocol (UDP) packets. This can cause the service to crash, leading to a denial of service. This vulnerability specifically affects Corosync deployments configured to use totemudp/totemudpu mode.
| CWE | CWE-190 |
| Vendor | red hat |
| Product | red hat enterprise linux 10 |
| Published | Apr 1, 2026 |
| Last Updated | May 29, 2026 |
Stay Ahead of the Next One
Get instant alerts for red hat red hat enterprise linux 10
Be the first to know when new high vulnerabilities affecting red hat red hat enterprise linux 10 are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Affected Versions
Red Hat / Red Hat Enterprise Linux 10
All versions affected Red Hat / Red Hat Enterprise Linux 10
All versions affected Red Hat / Red Hat Enterprise Linux 10.0 Extended Update Support
All versions affected Red Hat / Red Hat Enterprise Linux 7 Extended Lifecycle Support
All versions affected Red Hat / Red Hat Enterprise Linux 8
All versions affected Red Hat / Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support
All versions affected Red Hat / Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On
All versions affected Red Hat / Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support
All versions affected Red Hat / Red Hat Enterprise Linux 8.6 Telecommunications Update Service
All versions affected Red Hat / Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions
All versions affected Red Hat / Red Hat Enterprise Linux 8.8 Telecommunications Update Service
All versions affected Red Hat / Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions
All versions affected Red Hat / Red Hat Enterprise Linux 9
All versions affected Red Hat / Red Hat Enterprise Linux 9
All versions affected Red Hat / Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions
All versions affected Red Hat / Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions
All versions affected Red Hat / Red Hat Enterprise Linux 9.4 Extended Update Support
All versions affected Red Hat / Red Hat Enterprise Linux 9.6 Extended Update Support
All versions affected Red Hat / Red Hat OpenShift Container Platform 4
All versions affected References
access.redhat.com: https://access.redhat.com/errata/RHSA-2026:13644 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:13657 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:13673 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:14205 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:14210 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:14211 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:14212 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:14213 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:14214 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:14215 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:14216 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:19043 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:19200 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:20916 access.redhat.com: https://access.redhat.com/security/cve/CVE-2026-35092 bugzilla.redhat.com: https://bugzilla.redhat.com/show_bug.cgi?id=2453169 bugzilla.redhat.com: https://bugzilla.redhat.com/show_bug.cgi?id=2453814
Credits
Red Hat would like to thank Sebastián Alba Vives for reporting this issue.