CVE-2019-6443 PUBLISHED

An issue was discovered in NTPsec before 1.1.3. Because of a bug in ctl_getitem, there is a stack-based buffer over-read in read_sysvars in ntp_control.c in ntpd.

EPSS 36.99% · 97.1th percentile

Risk Scores

EPSS Score
36.99%
97.1th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSntpsec0, 1.0.0+dfsg1-1, 1.0.0+dfsg1-3

Timeline

References

Open in Interactive Console →