Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-7975

Опубликовано: 30 янв. 2017
Источник: ubuntu
Приоритет: negligible
EPSS Низкий
CVSS2: 2.1
CVSS3: 6.2

Описание

The nextvar function in NTP before 4.2.8p6 and 4.3.x before 4.3.90 does not properly validate the length of its input, which allows an attacker to cause a denial of service (application crash).

РелизСтатусПримечание
devel

not-affected

1:4.2.8p4+dfsg-3ubuntu6
esm-infra-legacy/trusty

not-affected

1:4.2.6.p5+dfsg-3ubuntu2.14.04.8
esm-infra/xenial

released

1:4.2.8p4+dfsg-3ubuntu5.3
precise

not-affected

1:4.2.6.p3+dfsg-1ubuntu3.9
trusty

not-affected

1:4.2.6.p5+dfsg-3ubuntu2.14.04.8
trusty/esm

not-affected

1:4.2.6.p5+dfsg-3ubuntu2.14.04.8
upstream

released

4.2.8p6
vivid

ignored

end of life
vivid/stable-phone-overlay

not-affected

vivid/ubuntu-core

DNE

Показывать по

EPSS

Процентиль: 61%
0.00412
Низкий

2.1 Low

CVSS2

6.2 Medium

CVSS3

Связанные уязвимости

redhat
около 10 лет назад

The nextvar function in NTP before 4.2.8p6 and 4.3.x before 4.3.90 does not properly validate the length of its input, which allows an attacker to cause a denial of service (application crash).

CVSS3: 6.2
nvd
около 9 лет назад

The nextvar function in NTP before 4.2.8p6 and 4.3.x before 4.3.90 does not properly validate the length of its input, which allows an attacker to cause a denial of service (application crash).

CVSS3: 6.2
debian
около 9 лет назад

The nextvar function in NTP before 4.2.8p6 and 4.3.x before 4.3.90 doe ...

CVSS3: 6.2
github
больше 3 лет назад

The nextvar function in NTP before 4.2.8p6 and 4.3.x before 4.3.90 does not properly validate the length of its input, which allows an attacker to cause a denial of service (application crash).

suse-cvrf
больше 9 лет назад

Security update for ntp

EPSS

Процентиль: 61%
0.00412
Низкий

2.1 Low

CVSS2

6.2 Medium

CVSS3