Логотип exploitDog
bind:"CVE-2015-1822" OR bind:"CVE-2015-1821" OR bind:"CVE-2015-1853"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2015-1822" OR bind:"CVE-2015-1821" OR bind:"CVE-2015-1853"

Количество 16

Количество 16

oracle-oval логотип

ELSA-2015-2241

почти 10 лет назад

ELSA-2015-2241: chrony security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2015-1822

больше 10 лет назад

chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a large number of command requests.

CVSS2: 6.5
EPSS: Низкий
redhat логотип

CVE-2015-1822

больше 10 лет назад

chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a large number of command requests.

CVSS2: 6
EPSS: Низкий
nvd логотип

CVE-2015-1822

больше 10 лет назад

chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a large number of command requests.

CVSS2: 6.5
EPSS: Низкий
debian логотип

CVE-2015-1822

больше 10 лет назад

chrony before 1.31.1 does not initialize the last "next" pointer when ...

CVSS2: 6.5
EPSS: Низкий
github логотип

GHSA-rchf-p2rm-hg6h

больше 3 лет назад

chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a large number of command requests.

EPSS: Низкий
ubuntu логотип

CVE-2015-1853

больше 5 лет назад

chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2015-1853

больше 10 лет назад

chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2015-1853

больше 5 лет назад

chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2015-1853

больше 5 лет назад

chrony before 1.31.1 does not properly protect state variables in auth ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2015-1821

больше 10 лет назад

Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute arbitrary code by configuring the (1) NTP or (2) cmdmon access with a subnet size that is indivisible by four and an address with a nonzero bit in the subnet remainder.

CVSS2: 6.5
EPSS: Низкий
redhat логотип

CVE-2015-1821

больше 10 лет назад

Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute arbitrary code by configuring the (1) NTP or (2) cmdmon access with a subnet size that is indivisible by four and an address with a nonzero bit in the subnet remainder.

CVSS2: 6
EPSS: Низкий
nvd логотип

CVE-2015-1821

больше 10 лет назад

Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute arbitrary code by configuring the (1) NTP or (2) cmdmon access with a subnet size that is indivisible by four and an address with a nonzero bit in the subnet remainder.

CVSS2: 6.5
EPSS: Низкий
debian логотип

CVE-2015-1821

больше 10 лет назад

Heap-based buffer overflow in chrony before 1.31.1 allows remote authe ...

CVSS2: 6.5
EPSS: Низкий
github логотип

GHSA-gf8j-j7q8-vhh5

больше 3 лет назад

chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-cm73-xw9w-xqmm

больше 3 лет назад

Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute arbitrary code by configuring the (1) NTP or (2) cmdmon access with a subnet size that is indivisible by four and an address with a nonzero bit in the subnet remainder.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2015-2241

ELSA-2015-2241: chrony security, bug fix, and enhancement update (MODERATE)

почти 10 лет назад
ubuntu логотип
CVE-2015-1822

chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a large number of command requests.

CVSS2: 6.5
2%
Низкий
больше 10 лет назад
redhat логотип
CVE-2015-1822

chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a large number of command requests.

CVSS2: 6
2%
Низкий
больше 10 лет назад
nvd логотип
CVE-2015-1822

chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a large number of command requests.

CVSS2: 6.5
2%
Низкий
больше 10 лет назад
debian логотип
CVE-2015-1822

chrony before 1.31.1 does not initialize the last "next" pointer when ...

CVSS2: 6.5
2%
Низкий
больше 10 лет назад
github логотип
GHSA-rchf-p2rm-hg6h

chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a large number of command requests.

2%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2015-1853

chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
redhat логотип
CVE-2015-1853

chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.

CVSS2: 4.3
1%
Низкий
больше 10 лет назад
nvd логотип
CVE-2015-1853

chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
debian логотип
CVE-2015-1853

chrony before 1.31.1 does not properly protect state variables in auth ...

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2015-1821

Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute arbitrary code by configuring the (1) NTP or (2) cmdmon access with a subnet size that is indivisible by four and an address with a nonzero bit in the subnet remainder.

CVSS2: 6.5
3%
Низкий
больше 10 лет назад
redhat логотип
CVE-2015-1821

Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute arbitrary code by configuring the (1) NTP or (2) cmdmon access with a subnet size that is indivisible by four and an address with a nonzero bit in the subnet remainder.

CVSS2: 6
3%
Низкий
больше 10 лет назад
nvd логотип
CVE-2015-1821

Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute arbitrary code by configuring the (1) NTP or (2) cmdmon access with a subnet size that is indivisible by four and an address with a nonzero bit in the subnet remainder.

CVSS2: 6.5
3%
Низкий
больше 10 лет назад
debian логотип
CVE-2015-1821

Heap-based buffer overflow in chrony before 1.31.1 allows remote authe ...

CVSS2: 6.5
3%
Низкий
больше 10 лет назад
github логотип
GHSA-gf8j-j7q8-vhh5

chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.

CVSS3: 6.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-cm73-xw9w-xqmm

Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute arbitrary code by configuring the (1) NTP or (2) cmdmon access with a subnet size that is indivisible by four and an address with a nonzero bit in the subnet remainder.

3%
Низкий
больше 3 лет назад

Уязвимостей на страницу