CVE-2018-7182
06.03.2018, 20:29
The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted mode 6 packet with a ntpd instance from 4.2.8p6 through 4.2.8p10.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ntp | ntp | 4.2.8:p10 |
| ntp | ntp | 4.2.8:p6 |
| ntp | ntp | 4.2.8:p7 |
| ntp | ntp | 4.2.8:p8 |
| ntp | ntp | 4.2.8:p9 |
| canonical | ubuntu_linux | 17.10 |
| canonical | ubuntu_linux | 18.04 |
| netapp | element_software | - |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ntp |
| ||||||||||||||||
| ntpsec |
|
Ubuntu Releases
Common Weakness Enumeration
References