libtirpc project kayıtları
libtirpc project üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %20
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-252 Unchecked Return Value1
- CWE-399 Resource Management Errors1
- CWE-755 Improper Handling of Exceptional Conditions1
- CWE-770 Allocation of Resources Without Limits or Throttling1
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
54Planlayın | CVE-2017-8779Silahlaştırılmış | rpcbind through 0.2.4, LIBTIRPC through 1.0.1 and 1.0.2-rc through 1.0.2-rc3, and NTIRPC through 1.4.3 do not consider the maximum RPC data rpcbind project · rpcbind · CWE-770 | Yüksek7,5 | — | %81,2 | 4 May 2017 |
31İzleyin | CVE-2018-14622İstismar yok | A null-pointer dereference vulnerability was found in libtirpc before version 0.3.3-rc3.libtirpc project · libtirpc · CWE-252 | Yüksek7,5 | — | %3,9 | 30 Ağu 2018 |
31İzleyin | CVE-2021-46828İstismar yok | In libtirpc before 1.3.3rc1, remote attackers could exhaust the file descriptors of a process that uses libtirpc because idle TCP connectionlibtirpc project · libtirpc · CWE-755 | Yüksek7,5 | — | %2,9 | 20 Tem 2022 |
31İzleyin | CVE-2018-14621İstismar yok | An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2.libtirpc project · libtirpc · CWE-835 | Yüksek7,5 | — | %2,3 | 30 Ağu 2018 |
19İzleyin | CVE-2013-1950Kavram kanıtı | The svc_dg_getargs function in libtirpc 0.2.3 and earlier allows remote attackers to cause a denial of service (rpcbind crash) via a Sun RPClibtirpc project · libtirpc · CWE-399 | Orta4,3 | — | %6,5 | 9 Tem 2013 |
- CVE-2017-877954Planlayın
rpcbind through 0.2.4, LIBTIRPC through 1.0.1 and 1.0.2-rc through 1.0.2-rc3, and NTIRPC through 1.4.3 do not consider the maximum RPC data
YüksekCVSS 7,5SilahlaştırılmışEPSS %81rpcbind project · rpcbind4 May 2017
- CVE-2018-1462231İzleyin
A null-pointer dereference vulnerability was found in libtirpc before version 0.3.3-rc3.
YüksekCVSS 7,5İstismar yokEPSS %4libtirpc project · libtirpc30 Ağu 2018
- CVE-2021-4682831İzleyin
In libtirpc before 1.3.3rc1, remote attackers could exhaust the file descriptors of a process that uses libtirpc because idle TCP connection
YüksekCVSS 7,5İstismar yokEPSS %3libtirpc project · libtirpc20 Tem 2022
- CVE-2018-1462131İzleyin
An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2.
YüksekCVSS 7,5İstismar yokEPSS %2libtirpc project · libtirpc30 Ağu 2018
- CVE-2013-195019İzleyin
The svc_dg_getargs function in libtirpc 0.2.3 and earlier allows remote attackers to cause a denial of service (rpcbind crash) via a Sun RPC
OrtaCVSS 4,3Kavram kanıtıEPSS %6libtirpc project · libtirpc9 Tem 2013