Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-6444

Опубликовано: 16 янв. 2019
Источник: nvd
CVSS3: 9.1
CVSS2: 6.4
EPSS Средний

Описание

An issue was discovered in NTPsec before 1.1.3. process_control() in ntp_control.c has a stack-based buffer over-read because attacker-controlled data is dereferenced by ntohl() in ntpd.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ntpsec:ntpsec:*:*:*:*:*:*:*:*
Версия до 1.1.3 (исключая)

EPSS

Процентиль: 94%
0.12577
Средний

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 7 лет назад

An issue was discovered in NTPsec before 1.1.3. process_control() in ntp_control.c has a stack-based buffer over-read because attacker-controlled data is dereferenced by ntohl() in ntpd.

CVSS3: 9.1
debian
около 7 лет назад

An issue was discovered in NTPsec before 1.1.3. process_control() in n ...

CVSS3: 9.1
github
больше 3 лет назад

An issue was discovered in NTPsec before 1.1.3. process_control() in ntp_control.c has a stack-based buffer over-read because attacker-controlled data is dereferenced by ntohl() in ntpd.

suse-cvrf
почти 7 лет назад

Security update for ntpsec

EPSS

Процентиль: 94%
0.12577
Средний

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-125