Untriaged
rpcbind 0.2.0 does not properly validate (1) /tmp/portmap.xdr and (2) …
rpcbind 0.2.0 does not properly validate (1) /tmp/portmap.xdr and (2) /tmp/rpcbind.xdr, which can be created by an attacker before the daemon is started.
References
- https://security-tracker.debian.org/tracker/CVE-2010-2061 x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-2061 x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2010-2061 x_refsource_MISC
- [oss-security] 20100608 CVE Request -- rpcbind -- Insecure (predictable) temporary file use mailing-list x_refsource_MLIST
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=583435#5 x_refsource_MISC
- https://security-tracker.debian.org/tracker/CVE-2010-2061 x_refsource_MISC x_transferred
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-2061 x_refsource_MISC x_transferred
- https://access.redhat.com/security/cve/cve-2010-2061 x_refsource_MISC x_transferred
- [oss-security] 20100608 CVE Request -- rpcbind -- Insecure (predictable) temporary file use mailing-list x_refsource_MLIST x_transferred
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=583435#5 x_refsource_MISC x_transferred
- https://security-tracker.debian.org/tracker/CVE-2010-2061 x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-2061 x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2010-2061 x_refsource_MISC
- [oss-security] 20100608 CVE Request -- rpcbind -- Insecure (predictable) temporary file use mailing-list x_refsource_MLIST
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=583435#5 x_refsource_MISC
- https://security-tracker.debian.org/tracker/CVE-2010-2061 x_refsource_MISC x_transferred
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-2061 x_refsource_MISC x_transferred
- https://access.redhat.com/security/cve/cve-2010-2061 x_refsource_MISC x_transferred
- [oss-security] 20100608 CVE Request -- rpcbind -- Insecure (predictable) temporary file use mailing-list x_refsource_MLIST x_transferred
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=583435#5 x_refsource_MISC x_transferred
Affected products
rpcbind
- ==0.2.0
Package maintainers
-
@abbradar Nikolay Amiantov <ab@fmap.me>