Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The receive function in ntp_proto.c in ntpd in NTP before 4.2.8 continues to execute after detecting a certain authentication error, which might allow remote attackers to trigger an unintended association change via crafted packets.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NTP‘receive’函数安全漏洞
Vulnerability Description
NTP(Network Time Protocol,网络时间协议)是一款通过网络同步计算机时钟的协议。 NTP 4.2.8之前版本的ntpd中的ntp_proto.c文件中的‘receive’函数存在安全漏洞,该漏洞源于程序检测到身份验证错误时仍继续执行进程。远程攻击者可借助特制的数据包利用该漏洞更改程序。
CVSS Information
N/A
Vulnerability Type
N/A