The protocol engine in ntp 4.2.6 prior to 4.2.8p11 allows a remote malicious users to cause a denial of service (disruption) by continually sending a packet with a zero-origin timestamp and source IP address of the "other side" of an interleaved association causing the victim ntpd to reset its association.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ntp ntp |
||
ntp ntp 4.2.8 |
||
synology diskstation manager |
||
synology router manager |
||
synology skynas |
||
synology virtual diskstation manager |
||
synology vs960hd_firmware |
||
canonical ubuntu linux 18.04 |
||
canonical ubuntu linux 12.04 |
||
canonical ubuntu linux 16.04 |
||
canonical ubuntu linux 14.04 |
||
canonical ubuntu linux 17.10 |
||
netapp hci - |
||
netapp solidfire - |
||
hpe hpux-ntp |
||
oracle fujitsu_m10-1_firmware |
||
oracle fujitsu_m10-4_firmware |
||
oracle fujitsu_m10-4s_firmware |
||
oracle fujitsu_m12-1_firmware |
||
oracle fujitsu_m12-2_firmware |
||
oracle fujitsu_m12-2s_firmware |