Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-9311

Опубликовано: 13 янв. 2017
Источник: debian
EPSS Средний

Описание

ntpd in NTP before 4.2.8p9, when the trap service is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted packet.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ntpfixed1:4.2.8p9+dfsg-1package
ntpno-dsajessiepackage
ntpno-dsawheezypackage

Примечания

  • http://support.ntp.org/bin/view/Main/NtpBug3119

  • http://www.talosintelligence.com/reports/TALOS-2016-0204/

  • Only affects configurations that do not have "restrict noquery", Debian's default config does have that restriction.

EPSS

Процентиль: 95%
0.18259
Средний

Связанные уязвимости

CVSS3: 5.9
ubuntu
почти 9 лет назад

ntpd in NTP before 4.2.8p9, when the trap service is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted packet.

CVSS3: 5.9
redhat
почти 9 лет назад

ntpd in NTP before 4.2.8p9, when the trap service is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted packet.

CVSS3: 5.9
nvd
почти 9 лет назад

ntpd in NTP before 4.2.8p9, when the trap service is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted packet.

CVSS3: 5.9
github
больше 3 лет назад

ntpd in NTP before 4.2.8p9, when the trap service is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted packet.

oracle-oval
почти 9 лет назад

ELSA-2017-0252: ntp security update (MODERATE)

EPSS

Процентиль: 95%
0.18259
Средний