https://security-tracker.debian.org/tracker/source-package/corosync
https://security-tracker.debian.org/tracker/CVE-2026-35091
https://security-tracker.debian.org/tracker/CVE-2026-35092
Severity: High
ID: 313710
File Name: debian_DSA-6261.nasl
Version: 1.1
Type: Local
Agent: unix
Family: Debian Local Security Checks
Published: 5/10/2026
Updated: 5/10/2026
Supported Sensors: Nessus Agent, Continuous Assessment, Nessus
Risk Factor: Medium
Score: 5.0
Risk Factor: High
Base Score: 8.5
Temporal Score: 6.7
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:C
CVSS Score Source: CVE-2026-35091
Risk Factor: High
Base Score: 8.2
Temporal Score: 7.4
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H
Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C
CPE: p-cpe:/a:debian:debian_linux:libcorosync-common4, p-cpe:/a:debian:debian_linux:libsam4, p-cpe:/a:debian:debian_linux:libquorum5, p-cpe:/a:debian:debian_linux:libcfg7, p-cpe:/a:debian:debian_linux:libvotequorum8, p-cpe:/a:debian:debian_linux:corosync-doc, p-cpe:/a:debian:debian_linux:corosync-vqsim, p-cpe:/a:debian:debian_linux:libsam-dev, p-cpe:/a:debian:debian_linux:libvotequorum-dev, p-cpe:/a:debian:debian_linux:libcfg-dev, p-cpe:/a:debian:debian_linux:libcorosync-common-dev, cpe:/o:debian:debian_linux:13.0, p-cpe:/a:debian:debian_linux:libquorum-dev, p-cpe:/a:debian:debian_linux:libcpg-dev, p-cpe:/a:debian:debian_linux:corosync, p-cpe:/a:debian:debian_linux:libcmap4, p-cpe:/a:debian:debian_linux:libcpg4, p-cpe:/a:debian:debian_linux:libcmap-dev, p-cpe:/a:debian:debian_linux:corosync-notifyd, cpe:/o:debian:debian_linux:12.0
Required KB Items: Host/local_checks_enabled, Host/Debian/release, Host/Debian/dpkg-l
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 5/10/2026
Vulnerability Publication Date: 1/8/2026
CVE: CVE-2026-35091, CVE-2026-35092
IAVA: 2026-A-0004