
Canonical has issued an official announcement regarding the NBD vulnerabilities that have been identified and patched in Ubuntu versions 15.04, 14.10, 14.04 LTS, and 12.04 LTS.
Just a few days ago, Canonical developers released a new update for the operating system to fix security issues identified in the NBD (Network Block Device) protocol. Users are urged to upgrade as soon as possible to fix the security gaps.
“Tuomas Räsänen discovered that NBD incorrectly handles export names and drops connections during negotiations. A remote attacker could exploit this vulnerability to cause NBD to crash, leading to a denial of service (DoS). This issue only affects Ubuntu 12.04 LTS,” the company’s security advisory states.
This is just one of the issues that have been identified and fixed in the new update. For a more detailed description of the vulnerabilities, you can refer to Canonical.
[alert variation=”alert-info”]If you are running one of the affected distributions, you should immediately upgrade your system to the latest NBD-server package for your distribution to fix the specific issues. To apply the patch, you should run the Update Manager application. Note that a system restart is not required, as NBD is not a core component.[/alert]
