CVE-2018-7182
06.03.2018, 20:29
The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted mode 6 packet with a ntpd instance from 4.2.8p6 through 4.2.8p10.Enginsight
Vendor | Product | Version |
---|---|---|
ntp | ntp | 4.2.8:p10 |
ntp | ntp | 4.2.8:p6 |
ntp | ntp | 4.2.8:p7 |
ntp | ntp | 4.2.8:p8 |
ntp | ntp | 4.2.8:p9 |
canonical | ubuntu_linux | 17.10 |
canonical | ubuntu_linux | 18.04 |
netapp | element_software | - |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
ntp |
| ||||||||||||||||
ntpsec |
|

Ubuntu Releases
Common Weakness Enumeration
References