CVE-2014-9295
20.12.2014, 02:59
Multiple stack-based buffer overflows in ntpd in NTP before 4.2.8 allow remote attackers to execute arbitrary code via a crafted packet, related to (1) the crypto_recv function when the Autokey Authentication feature is used, (2) the ctl_putdata function, and (3) the configure function.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ntp | ntp | 𝑥 ≤ 4.2.7 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Red Hat Enterprise Linux Releases
Red Hat Product | |||||
|---|---|---|---|---|---|
| ntp |
| ||||
| ntp-doc |
| ||||
| ntp-perl |
| ||||
| ntpdate |
| ||||
| sntp |
|
Common Weakness Enumeration
References