In libtirpc before 1.3.3rc1, remote attackers could exhaust the file descriptors of a process that uses libtirpc because idle TCP connections are mishandled. This can, in turn, lead to an svc_run infinite loop without accepting new connections.
Created libtirpc tracking bugs for this issue:
Affects: fedora-all [bug 2109364]
I will take it since I have processed the duplicated one bz2118157, close as duplicated.
*** This bug has been marked as a duplicate of bug 2118157 ***
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9
Via RHSA-2022:8400 https://access.redhat.com/errata/RHSA-2022:8400