CVE Vulnerabilities

CVE-2013-7441

Published: May 29, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The modern style negotiation in Network Block Device (nbd-server) 2.9.22 through 3.3 allows remote attackers to cause a denial of service (root process termination) by (1) closing the connection during negotiation or (2) specifying a name for a non-existent export.

Affected Software

NameVendorStart VersionEnd Version
NbdWouter_verhelst2.9.3 (including)2.9.3 (including)
NbdWouter_verhelst2.9.4 (including)2.9.4 (including)
NbdWouter_verhelst2.9.5 (including)2.9.5 (including)
NbdWouter_verhelst2.9.6 (including)2.9.6 (including)
NbdWouter_verhelst2.9.7 (including)2.9.7 (including)
NbdWouter_verhelst2.9.8 (including)2.9.8 (including)
NbdWouter_verhelst2.9.9 (including)2.9.9 (including)
NbdWouter_verhelst2.9.22 (including)2.9.22 (including)
NbdWouter_verhelst2.9.23 (including)2.9.23 (including)
NbdWouter_verhelst2.9.24 (including)2.9.24 (including)
NbdWouter_verhelst2.9.25 (including)2.9.25 (including)
NbdWouter_verhelst3.0 (including)3.0 (including)
NbdWouter_verhelst3.1 (including)3.1 (including)
NbdWouter_verhelst3.1.1 (including)3.1.1 (including)
NbdWouter_verhelst3.2 (including)3.2 (including)
NbdWouter_verhelst3.3 (including)3.3 (including)
NbdUbuntuprecise*
NbdUbuntuupstream*

References