Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-6757

Опубликовано: 19 сент. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-6757: libnbd security update (MODERATE)

[1.18.1-4.0.1]

  • Add new content to nbd_connect_uri.pod

[1.18.1-4]

  • Fix CVE-2024-7383 NBD server improper certificate validation resolves: RHEL-52730

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

libnbd

1.18.1-4.0.1.el9_4

libnbd-bash-completion

1.18.1-4.0.1.el9_4

libnbd-devel

1.18.1-4.0.1.el9_4

nbdfuse

1.18.1-4.0.1.el9_4

ocaml-libnbd

1.18.1-4.0.1.el9_4

ocaml-libnbd-devel

1.18.1-4.0.1.el9_4

python3-libnbd

1.18.1-4.0.1.el9_4

Oracle Linux x86_64

libnbd

1.18.1-4.0.1.el9_4

libnbd-bash-completion

1.18.1-4.0.1.el9_4

libnbd-devel

1.18.1-4.0.1.el9_4

nbdfuse

1.18.1-4.0.1.el9_4

ocaml-libnbd

1.18.1-4.0.1.el9_4

ocaml-libnbd-devel

1.18.1-4.0.1.el9_4

python3-libnbd

1.18.1-4.0.1.el9_4

Связанные CVE

Связанные уязвимости

CVSS3: 7.4
ubuntu
12 месяцев назад

A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This issue allows a man-in-the-middle attack on NBD traffic.

CVSS3: 7.4
redhat
около 1 года назад

A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This issue allows a man-in-the-middle attack on NBD traffic.

CVSS3: 7.4
nvd
12 месяцев назад

A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This issue allows a man-in-the-middle attack on NBD traffic.

CVSS3: 7.4
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 7.4
debian
12 месяцев назад

A flaw was found in libnbd. The client did not always correctly verify ...