cbcvebase.

Debian Ntp vulnerabilities

88 known vulnerabilities affecting debian/ntp.

Total CVEs
88
CISA KEV
0
Public exploits
7
Exploited in wild
1
Severity breakdown
CRITICAL3HIGH24MEDIUM40LOW21

Vulnerabilities

Page 4 of 5
CVE-2016-9042P4MEDIUMCVSS 5.9fixed in ntp 1:4.2.8p10+dfsg-1 (bullseye)2016
CVE-2016-9042 [MEDIUM] CVE-2016-9042: ntp - An exploitable denial of service vulnerability exists in the origin timestamp ch... An exploitable denial of service vulnerability exists in the origin timestamp check functionality of ntpd 4.2.8p9. A specially crafted unauthenticated network packet can be used to reset the expected origin timestamp for target peers. Legitimate replies from targeted peers will fail the origin timestamp check (TEST2) causing the reply to be dropped and creating a denial
debian
CVE-2016-1550P4MEDIUMCVSS 5.3fixed in ntp 1:4.2.8p7+dfsg-1 (bullseye)2016
CVE-2016-1550 [MEDIUM] CVE-2016-1550: ntp - An exploitable vulnerability exists in the message authentication functionality ... An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key. Scope: local bullseye: resolved (fixed in 1:4.2.8p7+dfsg-1)
debian
CVE-2015-8158P4MEDIUMCVSS 5.9fixed in ntp 1:4.2.8p7+dfsg-1 (bullseye)2015
CVE-2015-8158 [MEDIUM] CVE-2015-8158: ntp - The getresponse function in ntpq in NTP versions before 4.2.8p9 and 4.3.x before... The getresponse function in ntpq in NTP versions before 4.2.8p9 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (infinite loop) via crafted packets with incorrect values. Scope: local bullseye: resolved (fixed in 1:4.2.8p7+dfsg-1)
debian
CVE-2018-8956P4LOWCVSS 5.3fixed in ntp 1:4.2.8p14+dfsg-1 (bullseye)2018
CVE-2018-8956 [MEDIUM] CVE-2018-8956: ntp - ntpd in ntp 4.2.8p10, 4.2.8p11, 4.2.8p12 and 4.2.8p13 allow remote attackers to ... ntpd in ntp 4.2.8p10, 4.2.8p11, 4.2.8p12 and 4.2.8p13 allow remote attackers to prevent a broadcast client from synchronizing its clock with a broadcast NTP server via soofed mode 3 and mode 5 packets. The attacker must either be a part of the same broadcast network or control a slave in that broadcast network that can capture certain required packets on the attacker's
debian
CVE-2016-2517P4LOWCVSS 5.3fixed in ntp 1:4.2.8p7+dfsg-1 (bullseye)2016
CVE-2016-2517 [MEDIUM] CVE-2016-2517: ntp - NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a de... NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (prevent subsequent authentication) by leveraging knowledge of the controlkey or requestkey and sending a crafted packet to ntpd, which changes the value of trustedkey, controlkey, or requestkey. NOTE: this vulnerability exists because of a CVE-2016-2516 regression. Scope: lo
debian
CVE-2016-2519P4MEDIUMCVSS 5.9fixed in ntp 1:4.2.8p7+dfsg-1 (bullseye)2016
CVE-2016-2519 [MEDIUM] CVE-2016-2519: ntp - ntpd in NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to ca... ntpd in NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (ntpd abort) by a large request data value, which triggers the ctl_getitem function to return a NULL value. Scope: local bullseye: resolved (fixed in 1:4.2.8p7+dfsg-1)
debian
CVE-2017-6464P4LOWCVSS 6.5fixed in ntp 1:4.2.8p10+dfsg-1 (bullseye)2017
CVE-2017-6464 [MEDIUM] CVE-2017-6464: ntp - NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote attackers to cause a d... NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote attackers to cause a denial of service (ntpd crash) via a malformed mode configuration directive. Scope: local bullseye: resolved (fixed in 1:4.2.8p10+dfsg-1)
debian
CVE-2015-7977P4MEDIUMCVSS 5.9fixed in ntp 1:4.2.8p7+dfsg-1 (bullseye)2015
CVE-2015-7977 [MEDIUM] CVE-2015-7977: ntp - ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to ca... ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command. Scope: local bullseye: resolved (fixed in 1:4.2.8p7+dfsg-1)
debian
CVE-2014-9750P4MEDIUMCVSS 5.8fixed in ntp 1:4.2.6.p5+dfsg-5 (bullseye)2014
CVE-2014-9750 [MEDIUM] CVE-2014-9750: ntp - ntp_crypto.c in ntpd in NTP 4.x before 4.2.8p1, when Autokey Authentication is e... ntp_crypto.c in ntpd in NTP 4.x before 4.2.8p1, when Autokey Authentication is enabled, allows remote attackers to obtain sensitive information from process memory or cause a denial of service (daemon crash) via a packet containing an extension field with an invalid value for the length of its value field. Scope: local bullseye: resolved (fixed in 1:4.2.6.p5+dfsg-5)
debian
CVE-2015-7702P4MEDIUMCVSS 5.8fixed in ntp 1:4.2.8p4+dfsg-1 (bullseye)2015
CVE-2015-7702 [MEDIUM] CVE-2015-7702: ntp - The crypto_xmit function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4... The crypto_xmit function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (crash). NOTE: This vulnerability exists due to an incomplete fix for CVE-2014-9750. Scope: local bullseye: resolved (fixed in 1:4.2.8p4+dfsg-1)
debian
CVE-2015-8140P4MEDIUMCVSS 4.8fixed in ntp 1:4.2.8p7+dfsg-1 (bullseye)2015
CVE-2015-8140 [MEDIUM] CVE-2015-8140: ntp - The ntpq protocol in NTP before 4.2.8p7 allows remote attackers to conduct repla... The ntpq protocol in NTP before 4.2.8p7 allows remote attackers to conduct replay attacks by sniffing the network. Scope: local bullseye: resolved (fixed in 1:4.2.8p7+dfsg-1)
debian
CVE-2016-2516P4MEDIUMCVSS 5.3fixed in ntp 1:4.2.8p7+dfsg-1 (bullseye)2016
CVE-2016-2516 [MEDIUM] CVE-2016-2516: ntp - NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote... NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive. Scope: local bullseye: resolved (fixed in 1:4.2.8p7+dfsg-1)
debian
CVE-2017-6463P4MEDIUMCVSS 6.5fixed in ntp 1:4.2.8p10+dfsg-1 (bullseye)2017
CVE-2017-6463 [MEDIUM] CVE-2017-6463: ntp - NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote authenticated users to... NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote authenticated users to cause a denial of service (daemon crash) via an invalid setting in a :config directive, related to the unpeer option. Scope: local bullseye: resolved (fixed in 1:4.2.8p10+dfsg-1)
debian
CVE-2018-7170P4MEDIUMCVSS 6.5fixed in ntp 1:4.2.8p11+dfsg-1 (bullseye)2018
CVE-2018-7170 [MEDIUM] CVE-2018-7170: ntp - ntpd in ntp 4.2.x before 4.2.8p7 and 4.3.x before 4.3.92 allows authenticated us... ntpd in ntp 4.2.x before 4.2.8p7 and 4.3.x before 4.3.92 allows authenticated users that know the private symmetric key to create arbitrarily-many ephemeral associations in order to win the clock selection of ntpd and modify a victim's clock via a Sybil attack. This issue exists because of an incomplete fix for CVE-2016-1549. Scope: local bullseye: resolved (fixed in 1:
debian
CVE-2015-7850P4MEDIUMCVSS 6.5fixed in ntp 1:4.2.8p4+dfsg-1 (bullseye)2015
CVE-2015-7850 [MEDIUM] CVE-2015-7850: ntp - ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote authenti... ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote authenticated users to cause a denial of service (infinite loop or crash) by pointing the key file at the log file. Scope: local bullseye: resolved (fixed in 1:4.2.8p4+dfsg-1)
debian
CVE-2009-0021P4MEDIUMCVSS 5.8fixed in ntp 1:4.2.4p4+dfsg-8 (bullseye)2009
CVE-2009-0021 [MEDIUM] CVE-2009-0021: ntp - NTP 4.2.4 before 4.2.4p5 and 4.2.5 before 4.2.5p150 does not properly check the ... NTP 4.2.4 before 4.2.4p5 and 4.2.5 before 4.2.5p150 does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature for DSA and ECDSA keys, a similar vulnerability to CVE-2008-5077. Scope: local bullseye: resolved (fixed in 1:4.2.4p4+dfsg-8)
debian
CVE-2015-5146P4MEDIUMCVSS 5.3fixed in ntp 1:4.2.8p3+dfsg-1 (bullseye)2015
CVE-2015-5146 [MEDIUM] CVE-2015-5146: ntp - ntpd in ntp before 4.2.8p3 with remote configuration enabled allows remote authe... ntpd in ntp before 4.2.8p3 with remote configuration enabled allows remote authenticated users with knowledge of the configuration password and access to a computer entrusted to perform remote configuration to cause a denial of service (service crash) via a NULL byte in a crafted configuration directive packet. Scope: local bullseye: resolved (fixed in 1:4.2.8p3+dfsg-1)
debian
CVE-2014-5209P4MEDIUMCVSS 5.3fixed in ntp 1:4.2.8p3+dfsg-1 (bullseye)2014
CVE-2014-5209 [MEDIUM] CVE-2014-5209: ntp - An Information Disclosure vulnerability exists in NTP 4.2.7p25 private (mode 6/7... An Information Disclosure vulnerability exists in NTP 4.2.7p25 private (mode 6/7) messages via a GET_RESTRICT control message, which could let a malicious user obtain sensitive information. Scope: local bullseye: resolved (fixed in 1:4.2.8p3+dfsg-1)
debian
CVE-2020-15025P4LOWCVSS 4.4fixed in ntp 1:4.2.8p15-1 (bullseye)2020
CVE-2020-15025 [MEDIUM] CVE-2020-15025: ntp - ntpd in ntp 4.2.8 before 4.2.8p15 and 4.3.x before 4.3.101 allows remote attacke... ntpd in ntp 4.2.8 before 4.2.8p15 and 4.3.x before 4.3.101 allows remote attackers to cause a denial of service (memory consumption) by sending packets, because memory is not freed in situations where a CMAC key is used and associated with a CMAC algorithm in the ntp.keys file. Scope: local bullseye: resolved (fixed in 1:4.2.8p15-1)
debian
CVE-2015-7976P4LOWCVSS 4.3fixed in ntp 1:4.2.8p7+dfsg-1 (bullseye)2015
CVE-2015-7976 [MEDIUM] CVE-2015-7976: ntp - The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3... The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a crafted filename. Scope: local bullseye: resolved (fixed in 1:4.2.8p7+dfsg-1)
debian
Debian Ntp vulnerabilities | cvebase