cbcvebase.
CVE-2020-13817
published 2020-06-04

CVE-2020-13817: ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 allows remote attackers to cause a denial of service (daemon exit or system time change) by predicting…

PriorityP342high7.4CVSS 3.1
AVNACHPRNUINSUCNIHAH
EPSS
4.07%
89.5th percentile
ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 allows remote attackers to cause a denial of service (daemon exit or system time change) by predicting transmit timestamps for use in spoofed packets. The victim must be relying on unauthenticated IPv4 time sources. There must be an off-path attacker who can query time from the victim's ntpd instance.

Affected

19 ranges
VendorProductVersion rangeFixed in
debianntp< ntp 1:4.2.8p14+dfsg-1 (bullseye)ntp 1:4.2.8p14+dfsg-1 (bullseye)
debianntpsec< ntp 1:4.2.8p14+dfsg-1 (bullseye)ntp 1:4.2.8p14+dfsg-1 (bullseye)
fujitsum10-1_firmware< xcp2410xcp2410
fujitsum10-4_firmware< xcp2410xcp2410
fujitsum10-4_firmware< xcp3110xcp3110
fujitsum10-4s_firmware< xcp2410xcp2410
fujitsum10-4s_firmware< xcp3110xcp3110
fujitsum12-1_firmware< xcp2410xcp2410
fujitsum12-1_firmware< xcp3110xcp3110
fujitsum12-2_firmware< xcp2410xcp2410
fujitsum12-2_firmware< xcp3110xcp3110
fujitsum12-2s_firmware< xcp2410xcp2410
fujitsum12-2s_firmware< xcp3110xcp3110
ntpntp< 4.2.84.2.8
ntpntp
ntpntp>= 0 < 1:4.2.8p14+dfsg-11:4.2.8p14+dfsg-1
ntpntp>= 4.3.0 < 4.3.1004.3.100
opensuseleap
opensuseleap

CVSS provenance

nvdv3.17.4HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H
nvdv3.05.9MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:P
osv7.4HIGH
vendor_debian7.4LOW
vendor_oracle7.4HIGH
vendor_redhat7.4HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.