CVE-2016-2519 PUBLISHED

ntpd in NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (ntpd abort) by a large request data value, which triggers the ctl_getitem function to return a NULL value.

EPSS 9.49% · 92.8th percentile

Risk Scores

EPSS Score
9.49%
92.8th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSntp0, 1:4.2.6.p5+dfsg-3ubuntu8, 1:4.2.6.p5+dfsg-3ubuntu8.1

Timeline

References

Open in Interactive Console →