Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-14621

Опубликовано: 03 мар. 2016
Источник: redhat
CVSS3: 5.3
EPSS Низкий

Описание

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

An infinite loop vulnerability was found in libtirpc. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Ceph Storage 2libntirpcNot affected
Red Hat Ceph Storage 3libntirpcNot affected
Red Hat Enterprise Linux 6libtirpcNot affected
Red Hat Enterprise Linux 7libtirpcNot affected
Red Hat Enterprise Linux 8libtirpcNot affected
Red Hat OpenShift Enterprise 3libtirpcNot affected
Red Hat Storage 3libntirpcNot affected
Red Hat Virtualization 4libtirpcNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-835
https://bugzilla.redhat.com/show_bug.cgi?id=1620290libtirpc: Infinite loop in EMFILE case in svc_vc.c

EPSS

Процентиль: 65%
0.0048
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 7 лет назад

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

CVSS3: 5.3
nvd
больше 7 лет назад

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

CVSS3: 5.3
debian
больше 7 лет назад

An infinite loop vulnerability was found in libtirpc before version 1. ...

CVSS3: 7.5
github
больше 3 лет назад

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

oracle-oval
больше 4 лет назад

ELSA-2021-9449: libtirpc security update (IMPORTANT)

EPSS

Процентиль: 65%
0.0048
Низкий

5.3 Medium

CVSS3