Lucene search

K
cvelistRedhatCVELIST:CVE-2022-0485
HistoryAug 29, 2022 - 2:03 p.m.

CVE-2022-0485

2022-08-2914:03:04
CWE-252
redhat
www.cve.org
1
flaw
libnbd
copying

5.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

49.8%

A flaw was found in the copying tool nbdcopy of libnbd. When performing multi-threaded copies using asynchronous nbd calls, nbdcopy was blindly treating the completion of an asynchronous command as successful, rather than checking the *error parameter. This could result in the silent creation of a corrupted destination image.

CNA Affected

[
  {
    "product": "libnbd",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Fixed in libnbd v1.11.8"
      }
    ]
  }
]