CVE-2015-0847: High severity ubuntu vulnerability
Published May 29, 2015
·Updated
nbd-server.c in Network Block Device (nbd-server) before 3.11 does not properly handle signals, which allows remote attackers to cause a denial of service (deadlock) via unspecified vectors.
Affected Software
6 affected componentsFixes available
debian/nbd
1:3.19-3+deb10u11:3.21-1+deb11u11:3.24-1.11:3.25-1
Ubuntu=12.04
Ubuntu=14.04
Ubuntu=14.10
Ubuntu=15.04
Wouter Verhelst Nbd<=3.10
Remediation
Patch Available
Event History
May 29, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0847?
CVE-2015-0847 is classified as a medium severity vulnerability due to the potential for denial of service.
2
How do I fix CVE-2015-0847?
To fix CVE-2015-0847, upgrade your Network Block Device to version 3.11 or later.
3
What software versions are affected by CVE-2015-0847?
CVE-2015-0847 affects nbd-server versions up to and including 3.10 and several older Ubuntu Linux versions.
4
Can CVE-2015-0847 be exploited remotely?
Yes, CVE-2015-0847 can be exploited remotely, allowing attackers to trigger a denial of service condition.
5
What is the impact of CVE-2015-0847 on system performance?
The impact of CVE-2015-0847 can result in a deadlock situation, which can significantly degrade system performance.