Hash: SHA512

Package        : libtirpc
Version        : 0.2.2-5+deb7u1
CVE ID         : CVE-2017-8779
Debian Bug     : 861834

Guido Vranken discovered that incorrect memory management in libtirpc,
a transport-independent RPC library used by rpcbind and other programs
may result in denial of service via memory exhaustion (depending on
memory management settings).

For Debian 7 "Wheezy", these problems have been fixed in version
0.2.2-5+deb7u1.

We recommend that you upgrade your libtirpc packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

Debian LTS: DLA-936-1: libtirpc security update

May 10, 2017
Guido Vranken discovered that incorrect memory management in libtirpc, a transport-independent RPC library used by rpcbind and other programs may result in denial of service via me...

Summary

For Debian 7 "Wheezy", these problems have been fixed in version
0.2.2-5+deb7u1.

We recommend that you upgrade your libtirpc packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
Package : libtirpc
Version : 0.2.2-5+deb7u1
CVE ID : CVE-2017-8779
Debian Bug : 861834

Related News