Debian Rust-Ntpd vulnerabilities
2 known vulnerabilities affecting debian/rust-ntpd.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2025-58066MEDIUMCVSS 5.3fixed in rust-ntpd 1.6.2-1 (forky)2025
CVE-2025-58066 [MEDIUM] CVE-2025-58066: rust-ntpd - nptd-rs is a tool for synchronizing your computer's clock, implementing the NTP ...
nptd-rs is a tool for synchronizing your computer's clock, implementing the NTP and NTS protocols. In versions between 1.2.0 and 1.6.1 inclusive servers which allow non-NTS traffic are affected by a denial of service vulnerability, where an attacker can induce a message storm between two NTP servers running ntpd-rs. Client-only configurations are not affected. A
debian
CVE-2024-38528HIGHCVSS 7.5fixed in rust-ntpd 1.1.3-1 (forky)2024
CVE-2024-38528 [HIGH] CVE-2024-38528: rust-ntpd - nptd-rs is a tool for synchronizing your computer's clock, implementing the NTP ...
nptd-rs is a tool for synchronizing your computer's clock, implementing the NTP and NTS protocols. There is a missing limit for accepted NTS-KE connections. This allows an unauthenticated remote attacker to crash ntpd-rs when an NTS-KE server is configured. Non NTS-KE server configurations, such as the default ntpd-rs configuration, are unaffected. This vulnerabil
debian