The probability is the direct output of the EPSS model, and conveys an overall sense of the threat of exploitation in the wild. The percentile measures the EPSS probability relative to all known EPSS scores. Note: This data is updated daily, relying on the latest available EPSS model version. Check out the EPSS documentation for more details.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade nbd to version 3.24 or higher.
Affected versions of this package are vulnerable to Buffer Overflow via the handle_info function, which allows the len variable to be controlled by the attacker during the parsing of the name field by sending a crafted NBD_OPT_INFO or NBD_OPT_GO message with a large value as the length of the name.