Wouter Verhelst maintains the Network Block Device (NBD) project, a narrowly scoped but persistent component used for block-device access over networks in storage and virtualization contexts. The vulnerability disclosures associated with this project center on memory-buffer handling, reflecting the low-level I/O requirements of the NBD protocol implementation. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wouter Verhelst over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-0530HIGH Buffer overflow in the mainloop function in nbd-server.c in the server in Network Block Device (nbd) before 2.9.20 might allow remote attackers to execute arbitrary code via a long | Feb 22, 2011 | 7.5 | 27 | NO | NO |
CVE-2013-7441HIGH The modern style negotiation in Network Block Device (nbd-server) 2.9.22 through 3.3 allows remote attackers to cause a denial of service (root process termination) by (1) closing | May 29, 2015 | 7.8 | 26 | NO | NO |
CVE-2015-0847HIGH nbd-server.c in Network Block Device (nbd-server) before 3.11 does not properly handle signals, which allows remote attackers to cause a denial of service (deadlock) via unspecifie | May 29, 2015 | 7.8 | 25 | NO | NO |
CVE-2005-3534HIGH Buffer overflow in the Network Block Device (nbd) server 2.7.5 and earlier, and 2.8.0 through 2.8.2, allows remote attackers to execute arbitrary code via a large request, which is | Dec 22, 2005 | 7.5 | 24 | NO | NO |
CVE-2013-6410HIGH nbd-server in Network Block Device (nbd) before 3.5 does not properly check IP addresses, which might allow remote attackers to bypass intended access restrictions via an IP addres | Dec 7, 2013 | 7.5 | 20 | NO | NO |
CVE-2011-1925MEDIUM nbd-server.c in Network Block Device (nbd-server) 2.9.21 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by causing a negotiation failure, | May 31, 2011 | 5.0 | 19 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wouter Verhelst.
Media articles that mention a CVE ID that affects a product developed by Wouter Verhelst — matched by CVE ID, not by vendor name.