RHSA-2026:53847: Important: isns-utils security update
Important: isns-utils security update
Other sources
The iSNS package contains the daemon and tools to setup a iSNS server, and iSNS client tools. The Internet Storage Name Service (iSNS) protocol allows automated discovery, management and configuration of iSCSI and Fibre Channel devices (using iFCP gateways) on a TCP/IP network.Security Fix(es): open-isns: open-iscsi: Denial of Service via double-free in iSNS attribute decoder (CVE-2026-55995) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/isns-utilsto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1 - Upgrade
Upgrade
redhat/isns-utils-debuginfoto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1 - Upgrade
Upgrade
redhat/isns-utils-debugsourceto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1 - Upgrade
Upgrade
redhat/isns-utils-libsto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1 - Upgrade
Upgrade
redhat/isns-utils-libs-debuginfoto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1 - Upgrade
Upgrade
redhat/isns-utilsto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1.aa - Upgrade
Upgrade
redhat/isns-utils-debuginfoto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1.aa - Upgrade
Upgrade
redhat/isns-utils-debugsourceto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1.aa - Upgrade
Upgrade
redhat/isns-utils-libsto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1.aa - Upgrade
Upgrade
redhat/isns-utils-libs-debuginfoto a version that resolves this vulnerability.Fixed in 0.101-4.el9_8.1.aa
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:53847?
The severity of RHSA-2026:53847 is classified as high with a score of 7.
How do I fix RHSA-2026:53847?
To fix RHSA-2026:53847, update the iSNS package to the latest version provided in your Red Hat repositories.
What systems are affected by RHSA-2026:53847?
RHSA-2026:53847 affects various Red Hat Enterprise Linux systems, including those for ARM 64, IBM z Systems, and Power.
What is the purpose of the iSNS package mentioned in RHSA-2026:53847?
The iSNS package is used for automated discovery, management, and configuration of iSCSI and Fibre Channel devices.
Why is the RHSA-2026:53847 update considered important?
The update is considered important due to vulnerabilities that could compromise the security and functionality of storage devices managed by iSNS.