« List of all CVEs

CVE-2022-26496

Published: 3/6/2022 Last updated: 8/3/2024 Reserved: 3/6/2022

In nbd-server in nbd before 3.24, there is a stack-based buffer overflow. An attacker can cause a buffer overflow in the parsing of the name field by sending a crafted NBD_OPT_INFO or NBD_OPT_GO message with an large value as the length of the name.

CNA assigner: mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca) Requested by: n/a

Opam packages affected (1)

nbd-tool

Products affected (1)

Product Vendor Version
n/a n/a 3.0.1.5

References (18)