{
  "threat_severity" : "Important",
  "public_date" : "2026-07-29T13:43:22Z",
  "bugzilla" : {
    "description" : "open-isns: open-iscsi: Denial of Service via double-free in iSNS attribute decoder",
    "id" : "2508414",
    "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=2508414"
  },
  "cvss3" : {
    "cvss3_base_score" : "7.5",
    "cvss3_scoring_vector" : "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
    "status" : "draft"
  },
  "cwe" : "CWE-763",
  "details" : [ "A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS.\nThis issue affects open-iscsi: from ? through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "A flaw was found in open-iscsi. An unauthenticated man-in-the-middle (MITM) attacker can exploit a double-free vulnerability in the iSNS attribute decoder. This can lead to a denial of service (DoS) condition, making the affected system unavailable." ],
  "statement" : "This Important severity flaw in `open-iscsi` allows an unauthenticated Man-in-the-Middle (MITM) attacker to trigger a denial of service in the iSNS attribute decoder. The vulnerability is network-exploitable without requiring user interaction or authentication, posing a significant risk to the availability of iSNS services in environments where the `isns-utils` package is deployed and the iSNS service is exposed.",
  "package_state" : [ {
    "product_name" : "Red Hat Enterprise Linux 10",
    "fix_state" : "Affected",
    "package_name" : "isns-utils",
    "cpe" : "cpe:/o:redhat:enterprise_linux:10"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8",
    "fix_state" : "Affected",
    "package_name" : "isns-utils",
    "cpe" : "cpe:/o:redhat:enterprise_linux:8"
  }, {
    "product_name" : "Red Hat Enterprise Linux 9",
    "fix_state" : "Affected",
    "package_name" : "isns-utils",
    "cpe" : "cpe:/o:redhat:enterprise_linux:9"
  } ],
  "references" : [ "https://www.cve.org/CVERecord?id=CVE-2026-55995\nhttps://nvd.nist.gov/vuln/detail/CVE-2026-55995\nhttps://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-55995\nhttps://github.com/open-iscsi/open-isns/commit/56718d4e9d1a4f51c30697b5c0534144bb41c9bb" ],
  "name" : "CVE-2026-55995",
  "mitigation" : {
    "value" : "If the iSNS service is not actively used, disable it to prevent exploitation. \nTo disable the `isnsd` service, execute `systemctl disable --now isnsd`. \nIf the iSNS service is required, restrict network access to UDP port 3260 to only trusted hosts and networks using firewall rules. \nA service restart may be required for changes to take effect.",
    "lang" : "en:us"
  },
  "csaw" : false
}