VYPR

rpm package

opensuse/rpcbind&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/rpcbind&distro=openSUSE%20Tumbleweed

Vulnerabilities (3)

  • CVE-2026-16461MedJul 21, 2026
    affected < 1.2.9-2.1fixed 1.2.9-2.1

    A stack-based buffer overflow was found in rpcbind's rpcinfo utility. In rpcbdump() short mode (used by `rpcinfo -s`), version numbers from a remote RPCBPROC_DUMP reply are written into a fixed-size stack buffer without bounds checking. A user or administrator who runs `rpcinfo -

  • CVE-2017-8779HigMay 4, 2017
    affected < 1.2.6-2.2fixed 1.2.6-2.2

    rpcbind through 0.2.4, LIBTIRPC through 1.0.1 and 1.0.2-rc through 1.0.2-rc3, and NTIRPC through 1.4.3 do not consider the maximum RPC data size during memory allocation for XDR strings, which allows remote attackers to cause a denial of service (memory consumption with no subseq

  • CVE-2015-7236HigOct 1, 2015
    affected < 0.2.3-7.1fixed 0.2.3-7.1

    Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in rpcbind 0.2.1 and earlier allows remote attackers to cause a denial of service (daemon crash) via crafted packets, involving a PMAP_CALLIT code.