Vulnerabilities > Wouter Verhelst > NBD > 2.9.22
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2015-05-29 | CVE-2015-0847 | Code vulnerability in multiple products nbd-server.c in Network Block Device (nbd-server) before 3.11 does not properly handle signals, which allows remote attackers to cause a denial of service (deadlock) via unspecified vectors. | 7.8 |
2015-05-29 | CVE-2013-7441 | Resource Management Errors vulnerability in Wouter Verhelst NBD The modern style negotiation in Network Block Device (nbd-server) 2.9.22 through 3.3 allows remote attackers to cause a denial of service (root process termination) by (1) closing the connection during negotiation or (2) specifying a name for a non-existent export. | 7.8 |
2013-12-07 | CVE-2013-6410 | Permissions, Privileges, and Access Controls vulnerability in multiple products nbd-server in Network Block Device (nbd) before 3.5 does not properly check IP addresses, which might allow remote attackers to bypass intended access restrictions via an IP address that has a partial match in the authfile configuration file. | 7.5 |