İçeriğe atla
Noroxi

NTP kayıtları

ntp üreticisine ait 99 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
3 · %3
Pre-auth RCE
5
Düzeltme kaydı olan
%94,9
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

99 kayıt
  • CVE-2015-7871
    64Bu hafta

    Crypto-NAK packets in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to bypass authentication.

    KritikCVSS 9,8SilahlaştırılmışEPSS %82

    ntp · ntp7 Ağu 2017

  • CVE-2014-9295
    54Planlayın

    Multiple stack-based buffer overflows in ntpd in NTP before 4.2.8 allow remote attackers to execute arbitrary code via a crafted packet, rel

    YüksekCVSS 7,5Kavram kanıtıEPSS %79

    ntp · ntp19 Ara 2014

  • CVE-2013-5211
    49Planlayın

    The monlist feature in ntp_request.c in ntpd in NTP before 4.2.7p26 allows remote attackers to cause a denial of service (traffic amplificat

    OrtaCVSS 5,0SilahlaştırılmışEPSS %98

    ntp · ntp2 Oca 2014

  • CVE-2018-12327
    47Planlayın

    Stack-based buffer overflow in ntpq and ntpdc of NTP version 4.2.8p11 allows an attacker to achieve code execution or escalate to higher pri

    KritikCVSS 9,8Kavram kanıtıEPSS %28

    ntp · ntp20 Haz 2018

  • CVE-2016-7434
    46Planlayın

    The read_mru_list function in NTP before 4.2.8p9 allows remote attackers to cause a denial of service (crash) via a crafted mrulist query.

    YüksekCVSS 7,5Kavram kanıtıEPSS %53

    ntp · ntp13 Oca 2017

  • CVE-2016-4957
    43Planlayın

    ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash) via a crypto-NAK packet.

    YüksekCVSS 7,5İstismar yokEPSS %45

    ntp · ntp4 Tem 2016

  • CVE-2015-7705
    43Planlayın

    The rate limiting feature in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to have unspecified impact via a large n

    KritikCVSS 9,8İstismar yokEPSS %12

    ntp · ntp7 Ağu 2017

  • CVE-2015-7853
    43Planlayın

    The datalen parameter in the refclock driver in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to execute arbitra

    KritikCVSS 9,8İstismar yokEPSS %12

    ntp · ntp7 Ağu 2017

  • CVE-2018-7183
    42Planlayın

    Buffer overflow in the decodearr function in ntpq in ntp 4.2.8p6 through 4.2.8p10 allows remote attackers to execute arbitrary code by lever

    KritikCVSS 9,8İstismar yokEPSS %10

    ntp · ntp8 Mar 2018

  • CVE-2015-7849
    40Planlayın

    Use-after-free vulnerability in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote authenticated users to possibly exec

    YüksekCVSS 8,8İstismar yokEPSS %17

    ntp · ntp7 Ağu 2017

  • CVE-2016-9312
    39İzleyin

    ntpd in NTP before 4.2.8p9, when running on Windows, allows remote attackers to cause a denial of service via a large UDP packet.

    YüksekCVSS 7,5İstismar yokEPSS %31

    ntp · ntp13 Oca 2017

  • CVE-2018-7182
    39İzleyin

    The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-of-bounds read) via

    YüksekCVSS 7,5Kavram kanıtıEPSS %29

    ntp · ntp6 Mar 2018

  • CVE-2015-7854
    39İzleyin

    Buffer overflow in the password management functionality in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote authenticated us

    YüksekCVSS 8,8İstismar yokEPSS %15

    ntp · ntp7 Ağu 2017

  • CVE-2017-6458
    37İzleyin

    Multiple buffer overflows in the ctl_put* functions in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allow remote authenticated users to have

    YüksekCVSS 8,8İstismar yokEPSS %7

    ntp · ntp27 Mar 2017

  • CVE-2017-6460
    36İzleyin

    Stack-based buffer overflow in the reslist function in ntpq in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote servers have unspec

    YüksekCVSS 8,8İstismar yokEPSS %3

    ntp · ntp27 Mar 2017

  • CVE-2009-3563
    35İzleyin

    ntp_request.c in ntpd in NTP before 4.2.4p8, and 4.2.5, allows remote attackers to cause a denial of service (CPU and bandwidth consumption)

    OrtaCVSS 6,4SilahlaştırılmışEPSS %32

    ntp · ntp9 Ara 2009

  • CVE-2015-7855
    35İzleyin

    The decodenetnum function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service

    OrtaCVSS 6,5Kavram kanıtıEPSS %31

    ntp · ntp7 Ağu 2017

  • CVE-2016-4953
    35İzleyin

    ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (ephemeral-association demobilization) by sending a spoo

    YüksekCVSS 7,5İstismar yokEPSS %17

    ntp · ntp4 Tem 2016

  • CVE-2016-4954
    34İzleyin

    The process_packet function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (peer-vari

    YüksekCVSS 7,5İstismar yokEPSS %13

    ntp · ntp4 Tem 2016

  • CVE-2014-9294
    34İzleyin

    util/ntp-keygen.c in ntp-keygen in NTP before 4.2.7p230 uses a weak RNG seed, which makes it easier for remote attackers to defeat cryptogra

    YüksekCVSS 7,5İstismar yokEPSS %13

    ntp · ntp19 Ara 2014

  • CVE-2014-9293
    34İzleyin

    The config_auth function in ntpd in NTP before 4.2.7p11, when an auth key is not configured, improperly generates a key, which makes it easi

    YüksekCVSS 7,5İstismar yokEPSS %13

    ntp · ntp19 Ara 2014

  • CVE-2016-7426
    34İzleyin

    NTP before 4.2.8p9 rate limits responses received from the configured sources when rate limiting for all associations is enabled, which allo

    YüksekCVSS 7,5İstismar yokEPSS %12

    ntp · ntp13 Oca 2017

  • CVE-2015-7979
    34İzleyin

    NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (client-server association tear down) by sen

    YüksekCVSS 7,5İstismar yokEPSS %12

    ntp · ntp30 Oca 2017

  • CVE-2009-1252
    33İzleyin

    Stack-based buffer overflow in the crypto_recv function in ntp_crypto.c in ntpd in NTP before 4.2.4p7 and 4.2.5 before 4.2.5p74, when OpenSS

    OrtaCVSS 6,8İstismar yokEPSS %21

    ntp · ntp19 May 2009

  • CVE-2015-7704
    33İzleyin

    The ntpd client in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service via a number of craft

    YüksekCVSS 7,5İstismar yokEPSS %11

    ntp · ntp7 Ağu 2017