A flaw was found in libnbd. A server can reply with a block size larger than 2^63 (the NBD spec states the size is a 64-bit unsigned value). This issue could lead to an application crash or other unintended behavior for NBD clients that doesn't treat the return value of the nbd_get_size() function correctly.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2023-09-28T13:55:32.462Z

Updated: 2024-09-13T18:25:35.861Z

Reserved: 2023-09-26T21:54:47.184Z

Link: CVE-2023-5215

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-09-28T14:15:26.117

Modified: 2024-04-30T14:15:11.137

Link: CVE-2023-5215

cve-icon Redhat

Severity : Low

Publid Date: 2023-09-21T00:00:00Z

Links: CVE-2023-5215 - Bugzilla