Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.121168
Category:Gentoo Local Security Checks
Title:Gentoo Security Advisory GLSA 201403-08
Summary:Gentoo Linux Local Security Checks GLSA 201403-08
Description:Summary:
Gentoo Linux Local Security Checks GLSA 201403-08

Vulnerability Insight:
PlRPC uses Storable module for serialization and deserialization of untrusted data. Deserialized data can contain objects which can lead to loading of foreign modules, and possible execution of arbitrary code.

Solution:
Update the affected packages to the latest available version.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2013-7284
[oss-security] 20140109 PlRPC Perl module: pre-auth remote code execution, weak crypto
http://seclists.org/oss-sec/2014/q1/56
[oss-security] 20140109 Re: PlRPC Perl module: pre-auth remote code execution, weak crypto
http://seclists.org/oss-sec/2014/q1/62
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=734789
https://bugzilla.redhat.com/show_bug.cgi?id=1030572
https://bugzilla.redhat.com/show_bug.cgi?id=1051108
https://rt.cpan.org/Public/Bug/Display.html?id=90474
CopyrightCopyright (C) 2015 Eero Volotinen

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.