Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-7236

Опубликовано: 01 окт. 2015
Источник: debian
EPSS Низкий

Описание

Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in rpcbind 0.2.1 and earlier allows remote attackers to cause a denial of service (daemon crash) via crafted packets, involving a PMAP_CALLIT code.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
rpcbindfixed0.2.1-6.1package

Примечания

  • https://bugzilla.suse.com/show_bug.cgi?id=946204

  • http://www.spinics.net/lists/linux-nfs/msg53045.html

  • https://www.openwall.com/lists/oss-security/2015/09/17/1

EPSS

Процентиль: 92%
0.08207
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 10 лет назад

Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in rpcbind 0.2.1 and earlier allows remote attackers to cause a denial of service (daemon crash) via crafted packets, involving a PMAP_CALLIT code.

redhat
около 10 лет назад

Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in rpcbind 0.2.1 and earlier allows remote attackers to cause a denial of service (daemon crash) via crafted packets, involving a PMAP_CALLIT code.

CVSS3: 7.5
nvd
почти 10 лет назад

Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in rpcbind 0.2.1 and earlier allows remote attackers to cause a denial of service (daemon crash) via crafted packets, involving a PMAP_CALLIT code.

suse-cvrf
почти 10 лет назад

Security update for rpcbind

suse-cvrf
почти 10 лет назад

Security update for rpcbind

EPSS

Процентиль: 92%
0.08207
Низкий