VYPR

rpm package

opensuse/rpcbind&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/rpcbind&distro=openSUSE%20Tumbleweed

Vulnerabilities (2)

  • CVE-2017-8779HigMay 4, 2017
    affected < 1.2.6-2.2fixed 1.2.6-2.2

    rpcbind through 0.2.4, LIBTIRPC through 1.0.1 and 1.0.2-rc through 1.0.2-rc3, and NTIRPC through 1.4.3 do not consider the maximum RPC data size during memory allocation for XDR strings, which allows remote attackers to cause a denial of service (memory consumption with no subseq

  • CVE-2015-7236HigOct 1, 2015
    affected < 0.2.3-7.1fixed 0.2.3-7.1

    Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in rpcbind 0.2.1 and earlier allows remote attackers to cause a denial of service (daemon crash) via crafted packets, involving a PMAP_CALLIT code.