libnbd-1.18.1-3.el9
エラータID: AXSA:2024-7921:01
リリース日:
2024/05/30 Thursday - 12:52
題名:
libnbd-1.18.1-3.el9
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- libnbd の nbd_get_size() 関数には、仕様上許容されていない
2 の 63 乗を超えるブロックサイズ値を応答してしまう問題がある
ため、近隣ネットワーク上の攻撃者により、アプリケーションの
クラッシュ、および当該関数を利用する NBD クライアントへの
予測できない影響を伴う攻撃を可能とする脆弱性が存在します。
(CVE-2023-5215)
- libnbd には、リモートの攻撃者により、細工された NBD
プロトコルのパケットを介して、サービス拒否攻撃を可能と
する脆弱性が存在します。(CVE-2023-5871)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2023-5215
A flaw was found in libnbd. A server can reply with a block size larger than 2^63 (the NBD spec states the size is a 64-bit unsigned value). This issue could lead to an application crash or other unintended behavior for NBD clients that doesn't treat the return value of the nbd_get_size() function correctly.
A flaw was found in libnbd. A server can reply with a block size larger than 2^63 (the NBD spec states the size is a 64-bit unsigned value). This issue could lead to an application crash or other unintended behavior for NBD clients that doesn't treat the return value of the nbd_get_size() function correctly.
CVE-2023-5871
A flaw was found in libnbd, due to a malicious Network Block Device (NBD), a protocol for accessing Block Devices such as hard disks over a Network. This issue may allow a malicious NBD server to cause a Denial of Service.
A flaw was found in libnbd, due to a malicious Network Block Device (NBD), a protocol for accessing Block Devices such as hard disks over a Network. This issue may allow a malicious NBD server to cause a Denial of Service.
追加情報:
N/A
ダウンロード:
SRPMS
- libnbd-1.18.1-3.el9.src.rpm
MD5: 2177ece833f711c236c7574c716de0f2
SHA-256: e08121654ff8bdeeaf63bacb157adf9577ef46a0799e6f29f16794e5421e9b2d
Size: 1.51 MB
Asianux Server 9 for x86_64
- libnbd-1.18.1-3.el9.i686.rpm
MD5: e566e8209233614b518279b749b1222b
SHA-256: daebb890037ed2f050a6225310dabb1b787fb2771b4b48ef8a3f57f4cdcd43a7
Size: 169.19 kB - libnbd-1.18.1-3.el9.x86_64.rpm
MD5: 4034daa5d017fde7233bc79c50d44809
SHA-256: 0421508423246cd4b36ba6b825b12f4767062049a1f2ae122c076e03edac29ee
Size: 164.73 kB - libnbd-bash-completion-1.18.1-3.el9.noarch.rpm
MD5: d729c92415b00118e66f957e061076df
SHA-256: 631680af9c1a536cfbc465b2dcf1c14db4cb1ccf0b81ad761471fa30a79733ec
Size: 9.29 kB - libnbd-devel-1.18.1-3.el9.i686.rpm
MD5: 085ed97c2858866ed7c47224d9a39858
SHA-256: 62ef91d0147c875573341970a6b1ade65346b25b966c978d02646a03106632c7
Size: 482.41 kB - libnbd-devel-1.18.1-3.el9.x86_64.rpm
MD5: 8894481a6a9d0669f7e2478474ccdbdf
SHA-256: 855f305203f00e707eb825bddad81f10c00b27c36bf3cecdb0812cbf4c473572
Size: 482.42 kB - nbdfuse-1.18.1-3.el9.x86_64.rpm
MD5: c1a7a0195efab2bf68b6548e25eef136
SHA-256: ddaa013654ca86ffd93be738c384d8460dfbea5b3f0741547626c8722082c1fe
Size: 26.18 kB - ocaml-libnbd-1.18.1-3.el9.x86_64.rpm
MD5: 20a019498378d5aa05c64c548c4860cc
SHA-256: 6726da7420c20cb6ca6869e4f7ec70c6a4e48aab5aa6ef10e2e7bc355c18e684
Size: 61.78 kB - ocaml-libnbd-devel-1.18.1-3.el9.x86_64.rpm
MD5: 346324b8411e9892b425df65763a8eb2
SHA-256: 4cb39fdde49cad5854c07d8527ffd65ce2d8be4614ebc88ef8cf599fe40959c9
Size: 107.38 kB - python3-libnbd-1.18.1-3.el9.x86_64.rpm
MD5: b26de022cf071a1d2329b47760397a84
SHA-256: 2c082499ddb570bda7baf591a6ed42b32dc22ab7fba172e9210e0c22ccf49c95
Size: 86.18 kB