Hash: SHA512

Package        : rpcbind
Version        : 0.2.0-8+deb7u2
CVE ID         : CVE-2017-8779
Debian Bug     : 861835

Guido Vranken discovered that incorrect memory management in libtirpc,
a transport-independent RPC library used by rpcbind and other programs
may result in denial of service via memory exhaustion (depending on
memory management settings).

For Debian 7 "Wheezy", these problems have been fixed in version
0.2.0-8+deb7u2.

We recommend that you upgrade your rpcbind packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

Debian LTS: DLA-937-1: rpcbind security update

May 10, 2017
Guido Vranken discovered that incorrect memory management in libtirpc, a transport-independent RPC library used by rpcbind and other programs may result in denial of service via me...

Summary

For Debian 7 "Wheezy", these problems have been fixed in version
0.2.0-8+deb7u2.

We recommend that you upgrade your rpcbind packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
Package : rpcbind
Version : 0.2.0-8+deb7u2
CVE ID : CVE-2017-8779
Debian Bug : 861835

Related News