The iSNS daemon and utility programs
Go to file
RHEL Packaging Agent ffc0b3870c Fix CVE-2026-55995: double-free in isns-utils attrs.c error paths
Backport upstream fix for CVE-2026-55995, a double-free
vulnerability in attrs.c. The patch sets freed pointers to
NULL in the error paths of isns_attr_type_string_decode and
isns_attr_type_opaque_decode to prevent double-free conditions
that could lead to denial of service.

CVE: CVE-2026-55995
Upstream patches:
 - 56718d4e9d.patch
Resolves: RHEL-219462

This commit was backported by Ymir, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Ymir
2026-08-11 16:57:33 -07:00
.fmf packaging fixes for rpminspect and CI test definition update 2026-08-11 16:57:11 -07:00
plans packaging fixes for rpminspect and CI test definition update 2026-08-11 16:57:11 -07:00
tests packaging fixes for rpminspect and CI test definition update 2026-08-11 16:57:11 -07:00
.gitignore update to 0.101 2021-05-26 10:41:59 -07:00
isns-utils-0.101-CVE-2026-55995.patch Fix CVE-2026-55995: double-free in isns-utils attrs.c error paths 2026-08-11 16:57:33 -07:00
isns-utils.spec Fix CVE-2026-55995: double-free in isns-utils attrs.c error paths 2026-08-11 16:57:33 -07:00
isnsd.init RHEL 9.0.0 Alpha bootstrap 2020-10-15 13:48:09 +02:00
isnsd.service RHEL 9.0.0 Alpha bootstrap 2020-10-15 13:48:09 +02:00
sources update to 0.101 2021-05-26 10:41:59 -07:00
test_as_installed.patch packaging fixes for rpminspect and CI test definition update 2026-08-11 16:57:11 -07:00