Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-14621

Опубликовано: 30 авг. 2018
Источник: debian

Описание

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libtirpcnot-affectedpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1620290

  • https://bugzilla.suse.com/show_bug.cgi?id=968175

  • Introduced by: http://git.linux-nfs.org/?p=steved/libtirpc.git;a=commit;h=b2c9430f46c4ac848957fb8adaac176a3f6ac03f (0.3.3-rc3)

  • Fixed by: http://git.linux-nfs.org/?p=steved/libtirpc.git;a=commit;h=fce98161d9815ea016855d9f00274276452c2c4b

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 7 лет назад

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

CVSS3: 5.3
redhat
почти 10 лет назад

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

CVSS3: 5.3
nvd
больше 7 лет назад

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

CVSS3: 7.5
github
больше 3 лет назад

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

oracle-oval
больше 4 лет назад

ELSA-2021-9449: libtirpc security update (IMPORTANT)