Описание
Security update for pcp
This update for pcp fixes the following issues:
- CVE-2026-16524: command injection in
linux_socketsPMDA vianetwork.persocket.filter(bsc#1272922). - CVE-2026-16526: pmdaroot privilege escalation via
FD_CLOEXECfd inheritance and missing peer credentials (bsc#1272923). - CVE-2026-16527: missing authentication flags in pmproxy REST API (bsc#1272924).
- CVE-2026-16529: integer overflow in
__pmGetPDUleads to permanent DoS (bsc#1272925). - CVE-2026-16530: multiple OOB reads in libpcp record and PDU decoders (bsc#1272926).
- CVE-2026-16531: path traversal via hostname in pmproxy logger servlet (bsc#1272927).
- command injection in
pmieconfwrite_pmiefilevia$HOMEand-f(bsc#1272928). - command injection in
pmlogcp/pmlogmvdo_linkvia unsanitised filenames (bsc#1272930).
Список пакетов
SUSE Linux Enterprise Server 12 SP5-LTSS
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5
Ссылки
- Link for SUSE-SU-2026:3508-1
- E-Mail link for SUSE-SU-2026:3508-1
- SUSE Security Ratings
- SUSE Bug 1272922
- SUSE Bug 1272923
- SUSE Bug 1272924
- SUSE Bug 1272925
- SUSE Bug 1272926
- SUSE Bug 1272927
- SUSE Bug 1272928
- SUSE Bug 1272930
- SUSE CVE CVE-2026-16524 page
- SUSE CVE CVE-2026-16526 page
- SUSE CVE CVE-2026-16527 page
- SUSE CVE CVE-2026-16529 page
- SUSE CVE CVE-2026-16530 page
- SUSE CVE CVE-2026-16531 page
Описание
A command injection flaw in PCP's linux_sockets PMDA allows malicious shell metacharacters via the network.persocket.filter metric. This failed validation lets attackers execute arbitrary commands as the PMDA user when metrics refresh.
Затронутые продукты
Ссылки
- CVE-2026-16524
- SUSE Bug 1271393
Описание
A flaw in the PCP linux_sockets module exposes an unsecured internal connection. An attacker with initial code execution can exploit this to escalate privileges and execute arbitrary commands as root.
Затронутые продукты
Ссылки
- CVE-2026-16526
- SUSE Bug 1271393
Описание
An unauthenticated remote attacker can bypass access controls by sending crafted requests to the PCP pmproxy /store endpoint. This allows the attacker to overwrite any PMDA metric, leading to arbitrary code execution and system takeover.
Затронутые продукты
Ссылки
- CVE-2026-16527
- SUSE Bug 1271393
Описание
A signed integer overflow in the PCP __pmGetPDU() function can be exploited via crafted network packets during PDU processing or SASL negotiation. This permanently blinds the affected daemon, resulting in a total denial of service (DoS) for subsequent packet reads.
Затронутые продукты
Ссылки
- CVE-2026-16529
- SUSE Bug 1271393
Описание
A flaw was found in the PCP (Performance Co-Pilot) `pmproxy` service. A remote attacker can exploit a vulnerability in the `pmLogLoadInDom()` function by sending a specially crafted request. This bypasses a critical bounds check, which can lead to the `pmproxy` service crashing, causing a Denial of Service (DoS). Additionally, this flaw may enable the leakage of sensitive information from the system's memory.
Затронутые продукты
Ссылки
- CVE-2026-16530
- SUSE Bug 1271393
Описание
An unauthenticated remote attacker can exploit a path traversal vulnerability in the PCP pmproxy logger servlet using a crafted hostname. This allows arbitrary file and directory creation, potentially leading to a denial of service.
Затронутые продукты
Ссылки
- CVE-2026-16531
- SUSE Bug 1271393