Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-6301

Опубликовано: 09 дек. 2016
Источник: debian
EPSS Низкий

Описание

The recv_and_process_client_pkt function in networking/ntpd.c in busybox allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged NTP packet, which triggers a communication loop.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
busyboxfixed1:1.27.2-1package

Примечания

  • NTP server not enabled by default in debian/config/pkg/* via CONFIG_NTPD

  • Fixed by: https://git.busybox.net/busybox/commit/?id=150dc7a2b483b8338a3e185c478b4b23ee884e71

EPSS

Процентиль: 87%
0.03125
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 9 лет назад

The recv_and_process_client_pkt function in networking/ntpd.c in busybox allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged NTP packet, which triggers a communication loop.

CVSS3: 7.5
redhat
больше 9 лет назад

The recv_and_process_client_pkt function in networking/ntpd.c in busybox allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged NTP packet, which triggers a communication loop.

CVSS3: 7.5
nvd
около 9 лет назад

The recv_and_process_client_pkt function in networking/ntpd.c in busybox allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged NTP packet, which triggers a communication loop.

CVSS3: 7.5
github
больше 3 лет назад

The recv_and_process_client_pkt function in networking/ntpd.c in busybox allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged NTP packet, which triggers a communication loop.

suse-cvrf
около 4 лет назад

Security update for busybox

EPSS

Процентиль: 87%
0.03125
Низкий