System-level performance monitoring and performance management
Backport upstream fix for CVE-2026-16530, an arbitrary pointer dereference in __pmLogLoadInDom (CWE-125/822). The combined patch cherry-picks three upstream commits: the primary fix adding bounds checks and validation in e_indom.c for both libpcp and libpcp3, plus two regression fixes for pmlogrewrite and pmlogextract callers. QA tests are also updated to exercise the new failure modes. CVE: CVE-2026-16530 Upstream patches: - |
||
|---|---|---|
| .fmf | ||
| .gitignore | ||
| ci.fmf | ||
| gating.yaml | ||
| pcp-7.1.5-CVE-2026-16530.patch | ||
| pcp.spec | ||
| rpminspect.yaml | ||
| sources | ||