Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a large number of command requests.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Chrony 代码问题漏洞
Vulnerability Description
Chrony是一款网络时间协议的实现。 Chrony 1.31.1之前版本中存在代码问题漏洞,该漏洞源于当程序保存未确认的命令请求的回复时,没有正确初始化最后的指针。远程攻击者可通过发送大量的命令请求利用该漏洞造成拒绝服务或执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A