RPC.rpcbind.XDR.String.Data.Size.DoS

description-logoDescription

This indicates an attack attempt to exploit a Denial of Service vulnerability in rpcbind, LIBTIRPC, and NTIRPC.
The vulnerability is due to a flaw when handling memory allocation for certain UPD packet. A remote attacker may be able to exploit this to cause a denial of service condition on the affected system.

affected-products-logoAffected Products

rpcbind 0.2.4 and prior
LIBTIRPC 1.0.1 and prior
NTIRPC 1.4.3 and prior

Impact logoImpact

Denial of Service: Remote attackers can crash vulnerable systems or services.

recomended-action-logoRecommended Actions

Currently we are unaware of any vendor supplied patch or updates available for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2018-12-04 13.502 Sig Added