]> code.ossystems Code Review - openembedded-core.git/commit
rpcbind: Security Advisory - rpcbind - CVE-2015-7236
authorLi Zhou <li.zhou@windriver.com>
Tue, 17 Nov 2015 07:18:32 +0000 (02:18 -0500)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 1 Dec 2015 21:30:56 +0000 (21:30 +0000)
commitcc4f62f3627f3804907e8ff9c68d9321979df32b
tree4d8c36d5ebc063d960e5cd9cbd99f5e3cef93191
parent6da25614edcad30fdb4bea8ff47b81ff81cdaed2
rpcbind: Security Advisory - rpcbind - CVE-2015-7236

rpcbind: Fix memory corruption in PMAP_CALLIT code

Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in
rpcbind 0.2.1 and earlier allows remote attackers to cause a denial of
service (daemon crash) via crafted packets, involving a PMAP_CALLIT
code.

The patch comes from
<http://www.openwall.com/lists/oss-security/2015/09/18/7>, and it hasn't
been in rpcbind upstream yet.

Signed-off-by: Li Zhou <li.zhou@windriver.com>
Signed-off-by: Wenzong Fan <wenzong.fan@windriver.com>
Signed-off-by: Ross Burton <ross.burton@intel.com>
meta/recipes-extended/rpcbind/rpcbind/cve-2015-7236.patch [new file with mode: 0644]
meta/recipes-extended/rpcbind/rpcbind_0.2.3.bb