System-level performance monitoring and performance management
Go to file
Jan Kurik 1cb0a1f2ab
Fix GNUlocaldefs in CVE-2026-16526 and timezone patches
The CVE-2026-16526 patch incorrectly replaced qa/src/GNUlocaldefs with
the upstream secure branch version, referencing files missing from pcp
7.1.5 and breaking the qa/src build. Restore minimal 7.1.5 backport
changes and fix the timezone patch GNUlocaldefs context accordingly.

Resolves: RHEL-213756 CVE-2026-16531
Resolves: RHEL-213746 CVE-2026-16530
Resolves: RHEL-213726 CVE-2026-16529
Resolves: RHEL-213717 CVE-2026-16527
Resolves: RHEL-213692 CVE-2026-16526
Resolves: RHEL-213661 CVE-2026-16524
Co-authored-by: Cursor <cursoragent@cursor.com>
2026-08-12 12:35:51 +02:00
.fmf Initial implementation of Fedora gating for PCP 2021-02-08 08:20:06 +01:00
.gitignore Update to latest community sources (PCP v6) 2022-08-31 15:36:47 +10:00
ci.fmf Fix of ci.fmf 2025-09-30 14:58:32 +02:00
gating.yaml Reconfigured gating 2025-09-24 08:59:03 +02:00
pcp-7.1.5-CVE-2026-16524.patch Backport remaining PCP security CVE fixes for 7.1.5-5 2026-08-12 11:57:52 +02:00
pcp-7.1.5-CVE-2026-16526.patch Fix GNUlocaldefs in CVE-2026-16526 and timezone patches 2026-08-12 12:35:51 +02:00
pcp-7.1.5-CVE-2026-16527.patch Backport remaining PCP security CVE fixes for 7.1.5-5 2026-08-12 11:57:52 +02:00
pcp-7.1.5-CVE-2026-16529.patch Backport remaining PCP security CVE fixes for 7.1.5-5 2026-08-12 11:57:52 +02:00
pcp-7.1.5-CVE-2026-16530.patch Fix CVE-2026-16530: arbitrary pointer deref in __pmLogLoadInDom 2026-07-30 12:37:26 +00:00
pcp-7.1.5-CVE-2026-16531.patch Fix CVE-2026-16531: path traversal via hostname in pmproxy 2026-07-30 12:41:07 +00:00
pcp-7.1.5-OOB-pmDecodeInstance.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-OOB-pmDecodeLabel.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-OOB-pmDecodeLogStatus.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-OOB-pmDiscoverDecodeMetaInDom.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-OOB-pmLogLoadLabelSet.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-pducrash-oob-tests.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-pmdaroot-peer-credentials.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-pmieconf-command-injection.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-pmlogmv-command-injection.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-pmproxy-logger-auth.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-pmproxy-logger-meta-network.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-pmproxy-rest-certreqd.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-scanmeta-LogLoadInDom-caller.patch Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
pcp-7.1.5-timezone-zoneinfo-validation.patch Fix GNUlocaldefs in CVE-2026-16526 and timezone patches 2026-08-12 12:35:51 +02:00
pcp.spec Backport remaining private-pcp security hardening fixes for 7.1.5-6 2026-08-12 12:10:43 +02:00
rpminspect.yaml Rebase to pcp-7.1.5 2026-06-08 09:49:59 -04:00
sources Rebase to pcp-7.1.5 2026-06-08 09:49:59 -04:00