VYPR

rpm package

opensuse/libnbd&distro=openSUSE Leap 15.5

pkg:rpm/opensuse/libnbd&distro=openSUSE%20Leap%2015.5

Vulnerabilities (3)

  • CVE-2024-7383HigAug 5, 2024
    affected < 1.18.5-150300.8.21.1fixed 1.18.5-150300.8.21.1

    A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This issue allows a man-in-the-middle attack on NBD traffic.

  • CVE-2023-5871Nov 27, 2023
    affected < 1.18.1-150300.8.18.1fixed 1.18.1-150300.8.18.1

    A flaw was found in libnbd, due to a malicious Network Block Device (NBD), a protocol for accessing Block Devices such as hard disks over a Network. This issue may allow a malicious NBD server to cause a Denial of Service.

  • CVE-2023-5215Sep 28, 2023
    affected < 1.18.1-150300.8.15.1fixed 1.18.1-150300.8.15.1

    A flaw was found in libnbd. A server can reply with a block size larger than 2^63 (the NBD spec states the size is a 64-bit unsigned value). This issue could lead to an application crash or other unintended behavior for NBD clients that doesn't treat the return value of the nbd_g