October 27, 2000

Security advisory to ypbind

The advisory's at LWN.net: There are several security problems in ypbind, the daemon used by
NIS clients for binding to their NIS server(s). First, there is a
potential buffer overflow; it is not clear whether it is possible
to exploit it at all. Second, there is a denial of service attack
against ypbind that can make it run out of file descriptors.


