CVE-2021-3716
published 2022-03-02CVE-2021-3716: A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject…
low3.1CVSS 3.1
AVNACHPRLUINSUCNINAL
A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject a plaintext NBD_OPT_STRUCTURED_REPLY before proxying everything else a client sends to the server, potentially leading the client to terminate the NBD session. The highest threat from this vulnerability is to system availability.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nbdkit | < nbdkit 1.26.5-1 (bookworm) | nbdkit 1.26.5-1 (bookworm) |
| msrc | cbl2_nbdkit_on_cbl_mariner_2.0 | — | — |
| nbdkit_project | nbdkit | — | — |
| nbdkit_project | nbdkit | >= 0 < 1.26.5-1 | 1.26.5-1 |
| nbdkit_project | nbdkit | >= 0 < 1.26.5-1 | 1.26.5-1 |
| nbdkit_project | nbdkit | >= 0 < 1.26.5-1 | 1.26.5-1 |
| nbdkit_project | nbdkit | >= 1.11.8 < 1.24.6 | 1.24.6 |
| nbdkit_project | nbdkit | >= 1.25.1 < 1.26.5 | 1.26.5 |
| nbdkit_project | nbdkit | >= 1.27.1 < 1.27.6 | 1.27.6 |
| redhat | enterprise_linux | — | — |
CVSS provenance
nvdv3.13.1LOWCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L
osv3.1LOW
GHSA
GHSA-3vpg-mwgf-4jvj: A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary
ghsa_unreviewed·2022-03-04
CVE-2021-3716 [LOW] CWE-924 GHSA-3vpg-mwgf-4jvj: A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary
A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject a plaintext NBD_OPT_STRUCTURED_REPLY before proxying everything else a client sends to the server, potentially leading the client to terminate the NBD session. The highest threat from this vulnerability is to system availability.
OSV
CVE-2021-3716: A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary
osv·2022-03-02·CVSS 3.1
CVE-2021-3716 [LOW] CVE-2021-3716: A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary
A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject a plaintext NBD_OPT_STRUCTURED_REPLY before proxying everything else a client sends to the server, potentially leading the client to terminate the NBD session. The highest threat from this vulnerability is to system availability.
Microsoft
A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject a plaintext NBD_OPT_STRUCTURED_REPLY befo
vendor_msrc·2022-03-08·CVSS 3.1
CVE-2021-3716 [LOW] CWE-924 A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject a plaintext NBD_OPT_STRUCTURED_REPLY befo
A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject a plaintext NBD_OPT_STRUCTURED_REPLY before proxying everything else a client sends to the server, potentially leading the client to terminate the NBD session. The highest threat from this vulnerability is to system availability.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to tran
Red Hat
nbdkit: NBD_OPT_STRUCTURED_REPLY injection on STARTTLS
vendor_redhat·2021-08-16·CVSS 3.1
CVE-2021-3716 [LOW] CWE-924 nbdkit: NBD_OPT_STRUCTURED_REPLY injection on STARTTLS
nbdkit: NBD_OPT_STRUCTURED_REPLY injection on STARTTLS
A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject a plaintext NBD_OPT_STRUCTURED_REPLY before proxying everything else a client sends to the server, potentially leading the client to terminate the NBD session. The highest threat from this vulnerability is to system availability.
A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject a plaintext NBD_OPT_STRUCTURED_REPLY before proxying everything else a client sends to the server, potentially leading the client to terminate the NBD session. The highest threat from this vulner
Debian
CVE-2021-3716: nbdkit - A flaw was found in nbdkit due to to improperly caching plaintext state across t...
vendor_debian·2021·CVSS 3.1
CVE-2021-3716 [LOW] CVE-2021-3716: nbdkit - A flaw was found in nbdkit due to to improperly caching plaintext state across t...
A flaw was found in nbdkit due to to improperly caching plaintext state across the STARTTLS encryption boundary. A MitM attacker could use this flaw to inject a plaintext NBD_OPT_STRUCTURED_REPLY before proxying everything else a client sends to the server, potentially leading the client to terminate the NBD session. The highest threat from this vulnerability is to system availability.
Scope: local
bookworm: resolved (fixed in 1.26.5-1)
bullseye: open
forky: resolved (fixed in 1.26.5-1)
sid: resolved (fixed in 1.26.5-1)
trixie: resolved (fixed in 1.26.5-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.redhat.com/show_bug.cgi?id=1994695https://gitlab.com/nbdkit/nbdkit/-/commit/09a13dafb7bb3a38ab52eb5501cba786365ba7fdhttps://gitlab.com/nbdkit/nbdkit/-/commit/6c5faac6a37077cf2366388a80862bb00616d0d8https://listman.redhat.com/archives/libguestfs/2021-August/msg00083.htmlhttps://www.openwall.com/lists/oss-security/2021/08/18/2https://bugzilla.redhat.com/show_bug.cgi?id=1994695https://gitlab.com/nbdkit/nbdkit/-/commit/09a13dafb7bb3a38ab52eb5501cba786365ba7fdhttps://gitlab.com/nbdkit/nbdkit/-/commit/6c5faac6a37077cf2366388a80862bb00616d0d8https://listman.redhat.com/archives/libguestfs/2021-August/msg00083.htmlhttps://www.openwall.com/lists/oss-security/2021/08/18/2
2022-03-02
Published