CVE-2013-7441: Wouter Verhelst Nbd

High severity, CVSS 7.8. EPSS: 3.7% chance of exploitation in the next 30 days.

The modern style negotiation in Network Block Device (nbd-server) 2.9.22 through 3.3 allows remote attackers to cause a denial of service (root process termination) by (1) closing the connection during negotiation or (2) specifying a name for a non-existent export.

Affected products

  • Wouter Verhelst Nbd: version 2.9.3 only; version 2.9.4 only; version 2.9.5 only; version 2.9.6 only; version 2.9.7 only; version 2.9.8 only; …

Published 2015-05-29. Last modified 2026-06-17.