Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a syslog message for each unauthorized cmdmon packet, which allows remote attackers to cause a denial of service (disk consumption) via a large number of invalid packets.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tuxfamily Chrony chronyd cmdmon数据包系统日志消息拒绝服务攻击漏洞
Vulnerability Description
chrony是软件开发者Richard Curnow所研发的一套用于维护计算机系统时钟精度的工具。该工具包含chronyd(在系统后台运行的守护进程)和chronyc(用来监控chronyd性能和配置其参数的用户界面)程序。 Chrony chronyd中产生系统日志消息对每一个为授权的cmdmon数据包,允许远程攻击者引起拒绝服务攻击(磁盘崩溃)利用一个大的畸形数据包.
CVSS Information
N/A
Vulnerability Type
N/A