#VU14698 Infinite loop in libtirpc - CVE-2018-14621
Published: September 6, 2018 / Updated: September 7, 2018
libtirpc
linux-nfs.org
Description
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to improper handling of port settings. A remote attacker can configure the role of the targeted port to poll, rather than select, trigger infinite loop and cause the service to crash.