CVE-2018-14621: Libtirpc Project Libtirpc

High severity, CVSS 7.5. EPSS: 2.3% chance of exploitation in the next 30 days.

An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.

Affected products

Published 2018-08-30. Last modified 2026-06-17.