Booth Clusterlabs Booth

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Clusterlabs Booth.

By the Year

In 2025 there have been 0 vulnerabilities in Clusterlabs Booth. Last year, in 2024 Booth had 1 security vulnerability published. Right now, Booth is on track to have less security vulnerabilities in 2025 than it did last year.

Year Vulnerabilities Average Score
2025 0 0.00
2024 1 5.90
2023 0 0.00
2022 1 6.50
2021 0 0.00
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Booth vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Clusterlabs Booth Security Vulnerabilities

A flaw was found in Booth, a cluster ticket manager

CVE-2024-3049 5.9 - Medium - June 06, 2024

A flaw was found in Booth, a cluster ticket manager. If a specially-crafted hash is passed to gcry_md_get_algo_dlen(), it may allow an invalid HMAC to be accepted by the Booth server.

Insufficient Verification of Data Authenticity

The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node

CVE-2022-2553 6.5 - Medium - July 28, 2022

The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.

authentification

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Fedora Project Fedora or by Clusterlabs? Click the Watch button to subscribe.

Clusterlabs
Vendor

subscribe