NTP / NTP
99 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-26555 | ntp: an out-of-bounds write may lead to a DoS | MEDIUM | 6.4 | Apr 11, 2023 |
| CVE-2023-26554 | ntp: an out-of-bounds write when adding a '\0' character | MEDIUM | 5.6 | Apr 11, 2023 |
| CVE-2023-26553 | ntp: an out-of-bounds write when copying the trailing number | MEDIUM | 5.6 | Apr 11, 2023 |
| CVE-2023-26552 | ntp: an out-of-bounds write when adding a decimal point | MEDIUM | 5.6 | Apr 11, 2023 |
| CVE-2023-26551 | ntp: an out-of-bounds write in the cp<cpdec while loop | MEDIUM | 5.6 | Apr 11, 2023 |
| CVE-2020-15025 | ntp: Resource exhaustion via memory leak with CMAC keys | MEDIUM | 4.9 | Jun 24, 2020 |
| CVE-2020-13817 | ntp: ntpd using highly predictable transmit timestamps could result in time change or DoS | HIGH | 7.4 | Jun 4, 2020 |
| CVE-2018-8956 | ntp: ntpd allows remote attackers to prevent a broadcast client from synchronizing its clock | MEDIUM | 5.3 | May 6, 2020 |
| CVE-2020-11868 | ntp: DoS on client ntpd using server mode packet | HIGH | 7.5 | Apr 17, 2020 |
| CVE-2015-7851 | ntp: saveconfig directory traversal vulnerability | MEDIUM | 6.5 | Jan 28, 2020 |
| CVE-2014-5209 | ntp: Information Disclosure vulnerability via GET_RESTRICT control message | MEDIUM | 5.3 | Jan 8, 2020 |
| CVE-2019-8936 | ntp: Crafted null dereference attack in authenticated mode 6 packet | HIGH | 7.5 | May 15, 2019 |
| CVE-2019-11331 | ntp: Using port 123 for modes where a fixed port number is not required facilitates off-path attacks. | HIGH | 8.1 | Apr 18, 2019 |
| CVE-2018-12327 | ntp: Stack-based buffer overflow in ntpq and ntpdc allows denial of service or code execution | CRITICAL | 9.8 | Jun 20, 2018 |
| CVE-2016-9042 | ntp: DoS via origin timestamp check functionality | MEDIUM | 5.9 | Jun 4, 2018 |
| CVE-2018-7183 | ntp: decodearr() can write beyond its buffer limit | CRITICAL | 9.8 | Mar 8, 2018 |
| CVE-2018-7185 | ntp: Unauthenticated packet can reset authenticated interleaved association | HIGH | 7.5 | Mar 6, 2018 |
| CVE-2018-7184 | ntp: Interleaved symmetric mode cannot recover from bad state | HIGH | 7.5 | Mar 6, 2018 |
| CVE-2018-7182 | ntp: buffer read overrun leads information leak in ctl_getitem() | HIGH | 7.5 | Mar 6, 2018 |
| CVE-2018-7170 | ntp: Ephemeral association time spoofing additional protection | MEDIUM | 5.3 | Mar 6, 2018 |
| CVE-2015-5146 | ntp: ntpd control message crash on crafted NUL-byte in configuration directive (VU#668167) | MEDIUM | 5.3 | Aug 24, 2017 |
| CVE-2015-3405 | ntp: ntp-keygen may generate non-random symmetric keys on big-endian systems | HIGH | 7.5 | Aug 9, 2017 |
| CVE-2015-7871 | ntp: crypto-NAK symmetric association authentication bypass vulnerability | CRITICAL | 9.8 | Aug 7, 2017 |
| CVE-2015-7855 | ntp: ASSERT in decodenetnum() on invalid values | MEDIUM | 6.5 | Aug 7, 2017 |
| CVE-2015-7854 | ntp: password length memory corruption vulnerability | HIGH | 8.8 | Aug 7, 2017 |
Showing 1 to 25 of 99 CVEs