Search CVE reports


Toggle filters

11 – 20 of 21 results


CVE-2019-14851

Medium priority
Vulnerable

A denial of service vulnerability was discovered in nbdkit. A client issuing a certain sequence of commands could possibly trigger an assertion failure, causing nbdkit to exit. This issue only affected nbdkit versions 1.12.7,...

1 affected package

nbdkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nbdkit Not affected Not affected Not affected Not in release
Show less packages

CVE-2019-14850

Medium priority
Needs evaluation

A denial of service vulnerability was discovered in nbdkit 1.12.7, 1.14.1 and 1.15.1. An attacker could connect to the nbdkit service and cause it to perform a large amount of work in initializing backend plugins, by...

1 affected package

nbdkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nbdkit Not affected Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2019-14842

Medium priority

Not in release

Structured reply is a feature of the newstyle NBD protocol allowing the server to send a reply in chunks. A bounds check which was supposed to test for chunk offsets smaller than the beginning of the request did not work because...

1 affected package

libnbd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libnbd Not in release
Show less packages

CVE-2015-0847

Medium priority
Fixed

nbd-server.c in Network Block Device (nbd-server) before 3.11 does not properly handle signals, which allows remote attackers to cause a denial of service (deadlock) via unspecified vectors.

1 affected package

nbd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nbd
Show less packages

CVE-2013-7441

Medium priority
Fixed

The modern style negotiation in Network Block Device (nbd-server) 2.9.22 through 3.3 allows remote attackers to cause a denial of service (root process termination) by (1) closing the connection during negotiation or (2)...

1 affected package

nbd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nbd
Show less packages

CVE-2013-6410

Low priority

Some fixes available 1 of 5

nbd-server in Network Block Device (nbd) before 3.5 does not properly check IP addresses, which might allow remote attackers to bypass intended access restrictions via an IP address that has a partial match in the...

1 affected package

nbd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nbd
Show less packages

CVE-2013-0265

Low priority
Ignored

The redirect_stderr function in xnbd_common.c in xnbd-server and xndb-wrapper in xNBD 0.1.0 allow local users to overwrite arbitrary files via a symlink attack on /tmp/xnbd.log.

1 affected package

xnbd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xnbd
Show less packages

CVE-2011-1925

Low priority
Ignored

nbd-server.c in Network Block Device (nbd-server) 2.9.21 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by causing a negotiation failure, as demonstrated by specifying a name for a...

1 affected package

nbd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nbd
Show less packages

CVE-2011-0530

Medium priority

Some fixes available 3 of 5

Buffer overflow in the mainloop function in nbd-server.c in the server in Network Block Device (nbd) before 2.9.20 might allow remote attackers to execute arbitrary code via a long request. NOTE: this issue exists because of a...

1 affected package

nbd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nbd
Show less packages

CVE-2005-3534

Medium priority
Fixed

Buffer overflow in the Network Block Device (nbd) server 2.7.5 and earlier, and 2.8.0 through 2.8.2, allows remote attackers to execute arbitrary code via a large request, which is written past the end of the buffer because nbd...

1 affected package

nbd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nbd
Show less packages