Vulnerability Details CVE-2022-26495
In nbd-server in nbd before 3.24, there is an integer overflow with a resultant heap-based buffer overflow. A value of 0xffffffff in the name length field will cause a zero-sized buffer to be allocated for the name, resulting in a write to a dangling pointer. This issue exists for the NBD_OPT_INFO, NBD_OPT_GO, and NBD_OPT_EXPORT_NAME messages.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.4%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2022-26495
-
cpe:2.3:a:network_block_device_project:network_block_device:2.7.1
-
cpe:2.3:a:network_block_device_project:network_block_device:2.7.2
-
cpe:2.3:a:network_block_device_project:network_block_device:2.7.3
-
cpe:2.3:a:network_block_device_project:network_block_device:2.7.6
-
cpe:2.3:a:network_block_device_project:network_block_device:2.7.7
-
cpe:2.3:a:network_block_device_project:network_block_device:2.7.8
-
cpe:2.3:a:network_block_device_project:network_block_device:2.8.0
-
cpe:2.3:a:network_block_device_project:network_block_device:2.8.1
-
cpe:2.3:a:network_block_device_project:network_block_device:2.8.3
-
cpe:2.3:a:network_block_device_project:network_block_device:2.8.4
-
cpe:2.3:a:network_block_device_project:network_block_device:2.8.6
-
cpe:2.3:a:network_block_device_project:network_block_device:2.8.7
-
cpe:2.3:a:network_block_device_project:network_block_device:2.8.8
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.0
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.1
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.10
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.11
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.12
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.13
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.14
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.15
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.16
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.17
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.18
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.19
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.2
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.20
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.21
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.22
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.23
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.24
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.25
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.3
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.4
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.5
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.6
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.7
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.8
-
cpe:2.3:a:network_block_device_project:network_block_device:2.9.9
-
cpe:2.3:a:network_block_device_project:network_block_device:3.0
-
cpe:2.3:a:network_block_device_project:network_block_device:3.1
-
cpe:2.3:a:network_block_device_project:network_block_device:3.1.1
-
cpe:2.3:a:network_block_device_project:network_block_device:3.10
-
cpe:2.3:a:network_block_device_project:network_block_device:3.11
-
cpe:2.3:a:network_block_device_project:network_block_device:3.12
-
cpe:2.3:a:network_block_device_project:network_block_device:3.13
-
cpe:2.3:a:network_block_device_project:network_block_device:3.14
-
cpe:2.3:a:network_block_device_project:network_block_device:3.15
-
cpe:2.3:a:network_block_device_project:network_block_device:3.15.1
-
cpe:2.3:a:network_block_device_project:network_block_device:3.15.2
-
cpe:2.3:a:network_block_device_project:network_block_device:3.15.3
-
cpe:2.3:a:network_block_device_project:network_block_device:3.16
-
cpe:2.3:a:network_block_device_project:network_block_device:3.16.1
-
cpe:2.3:a:network_block_device_project:network_block_device:3.16.2
-
cpe:2.3:a:network_block_device_project:network_block_device:3.17
-
cpe:2.3:a:network_block_device_project:network_block_device:3.18
-
cpe:2.3:a:network_block_device_project:network_block_device:3.19
-
cpe:2.3:a:network_block_device_project:network_block_device:3.2
-
cpe:2.3:a:network_block_device_project:network_block_device:3.2.3
-
cpe:2.3:a:network_block_device_project:network_block_device:3.2.4
-
cpe:2.3:a:network_block_device_project:network_block_device:3.20
-
cpe:2.3:a:network_block_device_project:network_block_device:3.21
-
cpe:2.3:a:network_block_device_project:network_block_device:3.22
-
cpe:2.3:a:network_block_device_project:network_block_device:3.23
-
cpe:2.3:a:network_block_device_project:network_block_device:3.3
-
cpe:2.3:a:network_block_device_project:network_block_device:3.4
-
cpe:2.3:a:network_block_device_project:network_block_device:3.5
-
cpe:2.3:a:network_block_device_project:network_block_device:3.6
-
cpe:2.3:a:network_block_device_project:network_block_device:3.7
-
cpe:2.3:a:network_block_device_project:network_block_device:3.8
-
cpe:2.3:a:network_block_device_project:network_block_device:3.9
-
cpe:2.3:a:network_block_device_project:network_block_device:3.9.1
-
cpe:2.3:o:debian:debian_linux:10.0
-
cpe:2.3:o:debian:debian_linux:11.0
-
cpe:2.3:o:debian:debian_linux:9.0
-
cpe:2.3:o:fedoraproject:fedora:34
-
cpe:2.3:o:fedoraproject:fedora:35
-
cpe:2.3:o:fedoraproject:fedora:36