Show filters
62 Total Results
Displaying 11-20 of 62
Sort by:
Attacker Value
Unknown
CVE-2015-7851
Disclosure Date: January 28, 2020 (last updated February 21, 2025)
Directory traversal vulnerability in the save_config function in ntpd in ntp_control.c in NTP before 4.2.8p4, when used on systems that do not use '\' or '/' characters for directory separation such as OpenVMS, allows remote authenticated users to overwrite arbitrary files.
0
Attacker Value
Unknown
CVE-2019-8936
Disclosure Date: May 15, 2019 (last updated November 08, 2023)
NTP through 4.2.8p12 has a NULL Pointer Dereference.
0
Attacker Value
Unknown
CVE-2018-12327
Disclosure Date: June 20, 2018 (last updated November 26, 2024)
Stack-based buffer overflow in ntpq and ntpdc of NTP version 4.2.8p11 allows an attacker to achieve code execution or escalate to higher privileges via a long string as the argument for an IPv4 or IPv6 command-line parameter. NOTE: It is unclear whether there are any common situations in which ntpq or ntpdc is used with a command line from an untrusted source.
0
Attacker Value
Unknown
CVE-2016-9042
Disclosure Date: June 04, 2018 (last updated November 08, 2023)
An exploitable denial of service vulnerability exists in the origin timestamp check functionality of ntpd 4.2.8p9. A specially crafted unauthenticated network packet can be used to reset the expected origin timestamp for target peers. Legitimate replies from targeted peers will fail the origin timestamp check (TEST2) causing the reply to be dropped and creating a denial of service condition.
0
Attacker Value
Unknown
CVE-2018-7183
Disclosure Date: March 08, 2018 (last updated November 26, 2024)
Buffer overflow in the decodearr function in ntpq in ntp 4.2.8p6 through 4.2.8p10 allows remote attackers to execute arbitrary code by leveraging an ntpq query and sending a response with a crafted array.
0
Attacker Value
Unknown
CVE-2018-7185
Disclosure Date: March 06, 2018 (last updated January 15, 2025)
The protocol engine in ntp 4.2.6 before 4.2.8p11 allows a remote attackers to cause a denial of service (disruption) by continually sending a packet with a zero-origin timestamp and source IP address of the "other side" of an interleaved association causing the victim ntpd to reset its association.
0
Attacker Value
Unknown
CVE-2018-7184
Disclosure Date: March 06, 2018 (last updated January 15, 2025)
ntpd in ntp 4.2.8p4 before 4.2.8p11 drops bad packets before updating the "received" timestamp, which allows remote attackers to cause a denial of service (disruption) by sending a packet with a zero-origin timestamp causing the association to reset and setting the contents of the packet as the most recent timestamp. This issue is a result of an incomplete fix for CVE-2015-7704.
0
Attacker Value
Unknown
CVE-2018-7182
Disclosure Date: March 06, 2018 (last updated November 26, 2024)
The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted mode 6 packet with a ntpd instance from 4.2.8p6 through 4.2.8p10.
0
Attacker Value
Unknown
CVE-2018-7170
Disclosure Date: March 06, 2018 (last updated January 15, 2025)
ntpd in ntp 4.2.x before 4.2.8p7 and 4.3.x before 4.3.92 allows authenticated users that know the private symmetric key to create arbitrarily-many ephemeral associations in order to win the clock selection of ntpd and modify a victim's clock via a Sybil attack. This issue exists because of an incomplete fix for CVE-2016-1549.
0
Attacker Value
Unknown
CVE-2015-3405
Disclosure Date: August 09, 2017 (last updated November 26, 2024)
ntp-keygen in ntp 4.2.8px before 4.2.8p2-RC2 and 4.3.x before 4.3.12 does not generate MD5 keys with sufficient entropy on big endian machines when the lowest order byte of the temp variable is between 0x20 and 0x7f and not #, which might allow remote attackers to obtain the value of generated MD5 keys via a brute force attack with the 93 possible keys.
0