CVE-2013-7441
29.05.2015, 15:59
The modern style negotiation in Network Block Device (nbd-server) 2.9.22 through 3.3 allows remote attackers to cause a denial of service (root process termination) by (1) closing the connection during negotiation or (2) specifying a name for a non-existent export.Enginsight
| Vendor | Product | Version |
|---|---|---|
| wouter_verhelst | nbd | 2.9.3 |
| wouter_verhelst | nbd | 2.9.4 |
| wouter_verhelst | nbd | 2.9.5 |
| wouter_verhelst | nbd | 2.9.6 |
| wouter_verhelst | nbd | 2.9.7 |
| wouter_verhelst | nbd | 2.9.8 |
| wouter_verhelst | nbd | 2.9.9 |
| wouter_verhelst | nbd | 2.9.22 |
| wouter_verhelst | nbd | 2.9.23 |
| wouter_verhelst | nbd | 2.9.24 |
| wouter_verhelst | nbd | 2.9.25 |
| wouter_verhelst | nbd | 3.0 |
| wouter_verhelst | nbd | 3.1 |
| wouter_verhelst | nbd | 3.1.1 |
| wouter_verhelst | nbd | 3.2 |
| wouter_verhelst | nbd | 3.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References