Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-0294

Опубликовано: 08 фев. 2010
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a syslog message for each unauthorized cmdmon packet, which allows remote attackers to cause a denial of service (disk consumption) via a large number of invalid packets.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:tuxfamily:chrony:*:*:*:*:*:*:*:*
Версия до 1.23-pre1 (включая)
cpe:2.3:a:tuxfamily:chrony:1.18:*:*:*:*:*:*:*
cpe:2.3:a:tuxfamily:chrony:1.19:*:*:*:*:*:*:*
cpe:2.3:a:tuxfamily:chrony:1.19-1:*:*:*:*:*:*:*
cpe:2.3:a:tuxfamily:chrony:1.19.99.1:*:*:*:*:*:*:*
cpe:2.3:a:tuxfamily:chrony:1.19.99.2:*:*:*:*:*:*:*
cpe:2.3:a:tuxfamily:chrony:1.19.99.3:*:*:*:*:*:*:*
cpe:2.3:a:tuxfamily:chrony:1.20:*:*:*:*:*:*:*
cpe:2.3:a:tuxfamily:chrony:1.21:*:*:*:*:*:*:*
cpe:2.3:a:tuxfamily:chrony:1.21-pre1:*:*:*:*:*:*:*
cpe:2.3:a:tuxfamily:chrony:1.24-pre1:*:*:*:*:*:*:*

EPSS

Процентиль: 80%
0.01382
Низкий

5 Medium

CVSS2

Дефекты

CWE-399

Связанные уязвимости

ubuntu
почти 16 лет назад

chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a syslog message for each unauthorized cmdmon packet, which allows remote attackers to cause a denial of service (disk consumption) via a large number of invalid packets.

debian
почти 16 лет назад

chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a s ...

github
больше 3 лет назад

chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a syslog message for each unauthorized cmdmon packet, which allows remote attackers to cause a denial of service (disk consumption) via a large number of invalid packets.

EPSS

Процентиль: 80%
0.01382
Низкий

5 Medium

CVSS2

Дефекты

CWE-399