Name
CVE-2025-47712
Description
A flaw exists in the nbdkit "blocksize" filter that can be triggered by a specific type of client request. When a client requests block status information for a very large data range, exceeding a certain limit, it causes an internal error in the nbdkit, leading to a denial of service.
CWEs
Published Date
Updated Date
Workaround
-
Advisories
https://access.redhat.com/security/cve/CVE-2025-47712Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2365724Issue Tracking
Analysis#
Vulnerability Ratings#
6.5
CVSSv31
6.5
CVSSv31
NaN
other
Others affected components#
Resolved with patches#
nbdkit (yocto:kirkstone)
#
Title
Author
Resolve
1
blocksize: Fix 32-bit overflow in .extents [CVE-2025-47712]
Eric Blake <eblake@redhat.com>
CVE-2025-47712
nbdkit (yocto:scarthgap)
#
Title
Author
Resolve
1
blocksize: Fix 32-bit overflow in .extents
Gyorgy Sarvari <skandigraun@gmail.com>
CVE-2025-47712