System-level performance monitoring and performance management
Backport fix for CVE-2026-16530 (CWE-125/822) - an arbitrary pointer dereference in __pmLogLoadInDom. The bounds check on string indices was guarded by acp!=NULL, making it unreachable from the streaming path used by pmproxy. Three upstream commits are backported: the primary fix adding minimum rlen validation and unconditional bounds checks, plus two follow-up fixes for pmlogrewrite and pmlogextract that relied on the removed guard. CVE: CVE-2026-16530 Upstream patches: - |
||
|---|---|---|
| .fmf | ||
| .gitignore | ||
| atop-cpu-utilization.patch | ||
| ci.fmf | ||
| ds389.patch | ||
| fix-pmdabpf-noarch-man-page-build-failure.patch | ||
| gating.yaml | ||
| memory-leaks.patch | ||
| pcp2openmetrics_hang.patch | ||
| pcp-RHEL-133548.patch | ||
| pcp-RHEL-213747.patch | ||
| pcp.spec | ||
| pmapi-header-multilib-fix.patch | ||
| pmda-openmetrics_qa1976.patch | ||
| pmda-openmetrics_removal.patch | ||
| pmda-openmetrics-performance.patch | ||
| pmda-openmetrics-rollup.patch | ||
| pmwebapi-filter-exact.patch | ||
| python-pmda-wrapper-list-fix.patch | ||
| redhat-issues-RHEL-2317-default-archive-version.patch | ||
| redhat-issues-RHEL-58953-perl-drop-Y2038-checks.patch | ||
| rpminspect.yaml | ||
| selinux-pcp_pmie_t.patch | ||
| selinux-proc_psi_t.patch | ||
| sources | ||
| systemd-tmpfiles.d-directories.patch | ||