NA

CVE-2023-26551

Published: 11/04/2023 Updated: 20/04/2023
CVSS v3 Base Score: 5.6 | Impact Score: 3.4 | Exploitability Score: 2.2
VMScore: 0

Vulnerability Summary

mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write in the cp<cpdec while loop. An adversary may be able to attack a client ntpq process, but cannot attack ntpd.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ntp ntp 4.2.8

Vendor Advisories

mstolfp in libntp/mstolfpc in NTP 428p15 has an out-of-bounds write in the cp&lt;cpdec while loop (CVE-2023-26551) mstolfp in libntp/mstolfpc in NTP 428p15 has an out-of-bounds write when adding a decimal point (CVE-2023-26552) mstolfp in libntp/mstolfpc in NTP 428p15 has an out-of-bounds write when copying the trailing number (CVE-2023 ...
DescriptionThe MITRE CVE dictionary describes this issue as: mstolfp in libntp/mstolfpc in NTP 428p15 has an out-of-bounds write in the cp&amp;lt;cpdec while loop ...