CVE-2005-3534

Publication date 22 December 2005

Last updated 17 July 2025


Ubuntu priority

Buffer overflow in the Network Block Device (nbd) server 2.7.5 and earlier, and 2.8.0 through 2.8.2, allows remote attackers to execute arbitrary code via a large request, which is written past the end of the buffer because nbd does not account for memory taken by the reply header.

Status

Package Ubuntu Release Status
nbd 7.04 feisty
Fixed 2.8.3-1
6.10 edgy
Fixed 2.8.3-1
6.06 LTS dapper
Fixed 2.8.3-1