Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rqmr-f8r9-69wq

Опубликовано: 05 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This issue allows a man-in-the-middle attack on NBD traffic.

A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This issue allows a man-in-the-middle attack on NBD traffic.

EPSS

Процентиль: 33%
0.00129
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 7.4
ubuntu
12 месяцев назад

A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This issue allows a man-in-the-middle attack on NBD traffic.

CVSS3: 7.4
redhat
около 1 года назад

A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This issue allows a man-in-the-middle attack on NBD traffic.

CVSS3: 7.4
nvd
12 месяцев назад

A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This issue allows a man-in-the-middle attack on NBD traffic.

CVSS3: 7.4
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 7.4
debian
12 месяцев назад

A flaw was found in libnbd. The client did not always correctly verify ...

EPSS

Процентиль: 33%
0.00129
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-295