CVE-2018-14621: Libtirpc Project Libtirpc
High severity, CVSS 7.5. EPSS: 2.3% chance of exploitation in the next 30 days.
An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.
Affected products
- Libtirpc Project Libtirpc: up to and including 1.0.1; version 1.0.2 only
Published 2018-08-30. Last modified 2026-06-17.