Back

MEDIUM

ntp: ntpd control message crash on crafted NUL-byte in configuration directive (VU#668167)

Published Aug 24, 2017

Description

ntpd in ntp before 4.2.8p3 with remote configuration enabled allows remote authenticated users with knowledge of the configuration password and access to a computer entrusted to perform remote configuration to cause a denial of service (service crash) via a NULL byte in a crafted configuration directive packet.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (15)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 24, 2017
Updated Aug 6, 2024
Reserved Jun 29, 2015
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Jun 30, 2015