6.5
CVSSv2

CVE-2017-6458

Published: 27/03/2017 Updated: 07/11/2023
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Multiple buffer overflows in the ctl_put* functions in NTP prior to 4.2.8p10 and 4.3.x prior to 4.3.94 allow remote authenticated users to have unspecified impact via a long variable.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ntp ntp 4.2.8

ntp ntp

hpe hpux-ntp

apple mac os x

siemens simatic_net_cp_443-1_opc_ua_firmware

Vendor Advisories

Several security issues were fixed in NTP ...
Denial of Service via Malformed Config:A vulnerability was discovered in the NTP server's parsing of configuration directives A remote, authenticated attacker could cause ntpd to crash by sending a crafted message(CVE-2017-6464) Potential Overflows in ctl_put() functions:A vulnerability was found in NTP, in the building of response packets with c ...