PT-2019-18092 · Ntpsec+1 · Ntpsec+1

Magnus Klaaborg Stubman

+1

·

Publicado

2019-01-16

·

Atualizado

2019-01-23

·

CVE-2019-6444

CVSS v3.1

9.1

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions NTPsec versions prior to 1.1.3
Description An issue was discovered in NTPsec where the process control() function in ntp control.c has a stack-based buffer over-read. This occurs because attacker-controlled data is dereferenced by ntohl() in ntpd.
Recommendations For versions prior to 1.1.3, update to version 1.1.3 or later to resolve the issue.

Exploit

Correção

Out of bounds Read

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-6444
OPENSUSE-SU-2019:0082-1
OPENSUSE-SU-2019_0082-1

Produtos afetados

Ntpsec
Suse