Denial of service in ntirpc products - CVE-2017-8779
Published: May 4, 2017 / Updated: September 14, 2018
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to an error in xdr_bytes() and xdr_string() functions when processing RPC data during memory allocation within rpcbind implementation. A remote unauthenticated attacker can send a specially crafted UDP request to port 111 and consume up to 4 gigabytes of memory per request.
Successful exploitation of this vulnerability may result in denial of service (DoS) conditions.
Affected software
libtirpc
ntirpc
Amazon Linux AMI
Arch Linux
CentOS
SUSE Linux
Slackware Linux
Ubuntu
Fedora
Opensuse
rpcbind (Ubuntu package)
rpcbind
libtirpc
linux-firmware (Alpine package)
Dell EMC Unisphere Central
How to mitigate CVE-2017-8779
To mitigate the issue install the appropriate patch from your OS vendor's website.
As a temporary solution, block all UDP traffic to port 111.
rpcbind - addressed in versions 0.2.4-5.rc1.fc25, 0.2.4-6.rc1.fc26
libtirpc - addressed in versions 1.0.1-4.rc3.fc25, 1.0.1-4.rc3.fc26
Dell EMC Unisphere Central - update to 4.0.7
linux-firmware (Alpine package) - update to 20180615-r2
Links to Public Exploits and PoC-codes
External References
Related Security Bulletins
- Remote denial of service in rpcbind implementation
- CentOS update for libtirpc
- CentOS update for rpcbind
- Red Hat update for libtirpc
- openSUSE update for libtirpc
- CentOS 6 update for libtirpc
- CentOS 6 update for rpcbind
- openSUSE update for rpcbind
- Slackware Linux update for rpcbind
- Slackware Linux update for libtirpc
- Arch Linux update for rpcbind
- Amazon Linux AMI update for libtirpc
- Amazon Linux AMI update for rpcbind
- SUSE Linux update for libtirpc
- SUSE Linux update for rpcbind
- SUSE Linux update for rpcbind
- SUSE Linux update for libtirpc
- SUSE Linux update for libtirpc
- Denial of service in linux-firmware (Alpine package)
- Ubuntu update for rpcbind
- Ubuntu update for rpcbind
- Multiple vulnerabilities in Dell EMC Unisphere Central
- Fedora 25 update for rpcbind
- Fedora 26 update for rpcbind
- Fedora 26 update for libtirpc
- Fedora 25 update for libtirpc