CVE-2015-7692
- EPSS 10.17%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The crypto_xmit function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (crash). NOTE: This vulnerability exists due to an incomplete fix for CVE-2014-9750.
CVE-2015-7701
- EPSS 12.41%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Memory leak in the CRYPTO_ASSOC function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (memory consumption).
CVE-2015-7702
- EPSS 1.78%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The crypto_xmit function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (crash). NOTE: This vulnerability exists due to an incomplete fix for CVE-2014-9750.
CVE-2015-7704
- EPSS 13.94%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ntpd client in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service via a number of crafted "KOD" messages.
CVE-2015-7850
- EPSS 4.35%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote authenticated users to cause a denial of service (infinite loop or crash) by pointing the key file at the log file.
CVE-2015-7852
- EPSS 3.63%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
ntpq in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (crash) via crafted mode 6 response packets.
CVE-2015-7855
- EPSS 60.12%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The decodenetnum function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (assertion failure) via a 6 or mode 7 packet containing a long data value.
CVE-2015-7871
- EPSS 79.62%
- Veröffentlicht 07.08.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Crypto-NAK packets in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to bypass authentication.
CVE-2011-5325
- EPSS 3.69%
- Veröffentlicht 07.08.2017 17:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Directory traversal vulnerability in the BusyBox implementation of tar before 1.22.0 v5 allows remote attackers to point to files outside the current working directory via a symlink.
CVE-2017-12640
- EPSS 0.92%
- Veröffentlicht 07.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
ImageMagick 7.0.6-1 has an out-of-bounds read vulnerability in ReadOneMNGImage in coders/png.c.