The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.
2017-01-30T21:59:01.080
2025-04-20T01:37:25.860
Deferred
CVSSv3.1: 5.3 (MEDIUM)
AV:N/AC:L/Au:N/C:N/I:N/A:P
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ntp | ntp | < 4.2.8 | Yes |
Application | ntp | ntp | < 4.3.92 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Application | ntp | ntp | 4.2.8 | Yes |
Operating System | debian | debian_linux | 8.0 | Yes |
Operating System | debian | debian_linux | 9.0 | Yes |
Operating System | debian | debian_linux | 10.0 | Yes |
Application | netapp | clustered_data_ontap | - | Yes |
Application | netapp | data_ontap | - | Yes |
Application | netapp | oncommand_balance | - | Yes |
Application | netapp | oncommand_performance_manager | - | Yes |
Application | netapp | oncommand_unified_manager_for_clustered_data_ontap | - | Yes |
Application | oracle | communications_user_data_repository | 10.0.0 | Yes |
Application | oracle | communications_user_data_repository | 10.0.1 | Yes |
Application | oracle | communications_user_data_repository | 12.0.0 | Yes |
Operating System | oracle | linux | 6 | Yes |
Operating System | oracle | linux | 7 | Yes |
Operating System | redhat | enterprise_linux_desktop | 7.0 | Yes |
Operating System | redhat | enterprise_linux_server | 6.0 | Yes |
Operating System | redhat | enterprise_linux_server | 7.0 | Yes |
Operating System | redhat | enterprise_linux_server_aus | 7.2 | Yes |
Operating System | redhat | enterprise_linux_server_aus | 7.4 | Yes |
Operating System | redhat | enterprise_linux_server_aus | 7.6 | Yes |
Operating System | redhat | enterprise_linux_server_eus | 7.2 | Yes |
Operating System | redhat | enterprise_linux_server_eus | 7.3 | Yes |
Operating System | redhat | enterprise_linux_server_eus | 7.4 | Yes |
Operating System | redhat | enterprise_linux_server_eus | 7.5 | Yes |
Operating System | redhat | enterprise_linux_server_eus | 7.6 | Yes |
Operating System | redhat | enterprise_linux_server_eus | 7.7 | Yes |
Operating System | redhat | enterprise_linux_server_tus | 7.2 | Yes |
Operating System | redhat | enterprise_linux_server_tus | 7.3 | Yes |
Operating System | redhat | enterprise_linux_server_tus | 7.6 | Yes |
Operating System | redhat | enterprise_linux_server_tus | 7.7 | Yes |
Operating System | redhat | enterprise_linux_workstation | 6.0 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 9.3 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.1 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.2 | Yes |
Operating System | freebsd | freebsd | 10.3 | Yes |
Operating System | siemens | simatic_net_cp_443-1_opc_ua_firmware | * | Yes |
Hardware | siemens | simatic_net_cp_443-1_opc_ua | - | No |