Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Jon Szymaniak

#40237of 56,330
7.4Total CVSS
Vulnerabilities · 1
PT-2024-6389
7.4
2024-06-25
Libnbd · Libnbd · CVE-2024-7383
**Name of the Vulnerable Software and Affected Versions** libnbd (affected versions not specified) **Description** The issue is related to a flaw in the libnbd library, where the client does not always correctly verify the NBD server's certificate when using TLS to connect to an NBD server. This allows a man-in-the-middle attack on NBD traffic, potentially enabling a remote attacker to disclose protected information and impact system integrity. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.