[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2017-841 ---- rpcbind

ID: oval:org.secpod.oval:def:1600713Date: (C)2017-06-07   (M)2024-04-17
Class: PATCHFamily: unix




It was found that due to the way rpcbind uses libtirpc , a memoryleak can occur when parsing specially crafted XDR messages. An attacker sendingthousands of messages to rpcbind could cause its memory usage to grow withoutbound, eventually causing it to be terminated by the OOM killer

Platform:
Amazon Linux AMI
Product:
rpcbind
Reference:
ALAS-2017-841
CVE-2017-8779
CVE    1
CVE-2017-8779
CPE    2
cpe:/a:rpcbind:rpcbind
cpe:/o:amazon:linux

© SecPod Technologies