Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NTP 安全漏洞
Vulnerability Description
NTP(Network Time Protocol,网络时间协议)是一款通过网络同步计算机时钟的协议。 NTP 4.2.8p9之前的版本和4.3.92之前的4.3.x版本中的‘MATCH_ASSOC’函数存在安全漏洞。远程攻击者可通过发送带有较大hmode值的addpeer请求利用该漏洞造成越边界引用。
CVSS Information
N/A
Vulnerability Type
N/A