cbcvebase.
CVE-2015-7705
published 2017-08-07

CVE-2015-7705: The rate limiting feature in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to have unspecified impact via a large number of crafted…

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
The rate limiting feature in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to have unspecified impact via a large number of crafted requests.

Affected

18 ranges
VendorProductVersion rangeFixed in
ciscoproducts_october_2015
citrixcitrix_adm
citrixcitrix_hypervisor
citrixcitrix_virtual_apps_and_desktops
citrixendpoint_management
citrixnetscaler_adc
citrixnetscaler_gateway
citrixxenserver
citrixxenserver
citrixxenserver
citrixxenserver
citrixxenserver
debianntp< ntp 1:4.2.8p4+dfsg-3 (bullseye)ntp 1:4.2.8p4+dfsg-3 (bullseye)
ntpntp
ntpntp>= 0 < 1:4.2.8p4+dfsg-31:4.2.8p4+dfsg-3
ntpntp>= 0 < 1:4.2.6.p5+dfsg-3ubuntu2.14.04.51:4.2.6.p5+dfsg-3ubuntu2.14.04.5
ntpntp>= 4.2.0 < 4.2.84.2.8
ntpntp>= 4.3.0 < 4.3.774.3.77

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL