Medium severity6.5NVD Advisory· Published Jul 30, 2026· Updated Jul 30, 2026
CVE-2026-16530
CVE-2026-16530
Description
A flaw was found in the PCP (Performance Co-Pilot) pmproxy service. A remote attacker can exploit a vulnerability in the pmLogLoadInDom() function by sending a specially crafted request. This bypasses a critical bounds check, which can lead to the pmproxy service crashing, causing a Denial of Service (DoS). Additionally, this flaw may enable the leakage of sensitive information from the system's memory.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.