Buffer overflow in the mainloop function in nbd-server.c in the server in Network Block Device (nbd) before 2.9.20 might allow remote attackers to execute arbitrary code via a long request. NOTE: this issue exists because of a CVE-2005-3534 regression.
| Software | From | Fixed in |
|---|---|---|
| wouter_verhelst / nbd | 2.9.14 | 2.9.14.x |
| wouter_verhelst / nbd | 2.9.13 | 2.9.13.x |
| wouter_verhelst / nbd | 2.9.10 | 2.9.10.x |
| wouter_verhelst / nbd | 2.9.3 | 2.9.3.x |
| wouter_verhelst / nbd | 2.9.6 | 2.9.6.x |
| wouter_verhelst / nbd | 2.9.15 | 2.9.15.x |
| wouter_verhelst / nbd | 2.9.18 | 2.9.18.x |
| wouter_verhelst / nbd | 2.9.1 | 2.9.1.x |
| wouter_verhelst / nbd | 2.9.2 | 2.9.2.x |
| wouter_verhelst / nbd | 2.9.7 | 2.9.7.x |
| wouter_verhelst / nbd | 2.9.9 | 2.9.9.x |
| wouter_verhelst / nbd | 2.9.4 | 2.9.4.x |
| wouter_verhelst / nbd | 2.9.8 | 2.9.8.x |
| wouter_verhelst / nbd | 2.9.0 | 2.9.0.x |
| wouter_verhelst / nbd | 2.9.12 | 2.9.12.x |
| wouter_verhelst / nbd | 2.9.17 | 2.9.17.x |
| wouter_verhelst / nbd | 2.9.5 | 2.9.5.x |
| wouter_verhelst / nbd | 2.9.16 | 2.9.16.x |
| wouter_verhelst / nbd | 2.9.11 | 2.9.11.x |
| wouter_verhelst / nbd | - | 2.9.19.x |