Infinite loop in libtirpc - CVE-2018-14621
Published: September 6, 2018 / Updated: September 7, 2018
Vulnerability details
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to improper handling of port settings. A remote attacker can configure the role of the targeted port to poll, rather than select, trigger infinite loop and cause the service to crash.
Affected software
Dynamic System Analysis (DSA) Preboot
How to mitigate CVE-2018-14621
Dynamic System Analysis (DSA) Preboot - update to dsyte2z-9.65