Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-16529

Опубликовано: 30 июл. 2026
Источник: redhat
CVSS3: 7.5

Описание

A signed integer overflow in the PCP __pmGetPDU() function can be exploited via crafted network packets during PDU processing or SASL negotiation. This permanently blinds the affected daemon, resulting in a total denial of service (DoS) for subsequent packet reads.

Отчет

This is an Important denial of service vulnerability in PCP due to a signed integer overflow. An unauthenticated remote attacker could exhaust resources by sending a specially crafted request to the pmlogger or pmcd services, leading to a permanent denial of service for the affected daemon. While both services are typically bound to the loopback interface by default, remote exploitation is possible if the default binding configuration is altered or if PMLOGGER_LOCAL is unset for pmlogger.

Меры по смягчению последствий

To mitigate this issue, ensure that Performance Co-Pilot (PCP) services, specifically pmlogger and pmcd, are not exposed to untrusted networks. By default, these services are configured to listen only on the loopback interface, which prevents remote exploitation. If these default network bindings have been altered, revert them to restrict access to localhost. For pmlogger, ensure the PMLOGGER_LOCAL environment variable is set. If remote access to PCP services is not required, consider implementing firewall rules to block external connections to TCP ports 4330 (pmlogger) and 44321 (pmcd). Changes to network configurations or environment variables may require restarting the affected PCP services for the mitigation to take effect.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10pcpAffected
Red Hat Enterprise Linux 6pcpOut of support scope
Red Hat Enterprise Linux 7pcpAffected
Red Hat Enterprise Linux 8pcpAffected
Red Hat Enterprise Linux 9pcpAffected
Red Hat OpenShift Container Platform 4rhcosNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2506032PCP: PCP: Denial of Service due to signed integer overflow

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
19 дней назад

A signed integer overflow in the PCP __pmGetPDU() function can be exploited via crafted network packets during PDU processing or SASL negotiation. This permanently blinds the affected daemon, resulting in a total denial of service (DoS) for subsequent packet reads.

CVSS3: 7.5
nvd
19 дней назад

A signed integer overflow in the PCP __pmGetPDU() function can be exploited via crafted network packets during PDU processing or SASL negotiation. This permanently blinds the affected daemon, resulting in a total denial of service (DoS) for subsequent packet reads.

CVSS3: 7.5
debian
19 дней назад

A signed integer overflow in the PCP __pmGetPDU() function can be expl ...

CVSS3: 7.5
github
19 дней назад

A signed integer overflow in the PCP __pmGetPDU() function can be exploited via crafted network packets during PDU processing or SASL negotiation. This permanently blinds the affected daemon, resulting in a total denial of service (DoS) for subsequent packet reads.

suse-cvrf
12 дней назад

Security update for pcp

7.5 High

CVSS3