Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Unlimited number of NTS-KE connections can crash ntpd-rs server
Vulnerability Description
nptd-rs is a tool for synchronizing your computer's clock, implementing the NTP and NTS protocols. There is a missing limit for accepted NTS-KE connections. This allows an unauthenticated remote attacker to crash ntpd-rs when an NTS-KE server is configured. Non NTS-KE server configurations, such as the default ntpd-rs configuration, are unaffected. This vulnerability has been patched in version 1.1.3.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
不加限制或调节的资源分配
Vulnerability Title
ntpd-rs 安全漏洞
Vulnerability Description
ntpd-rs是一款用于同步计算机时钟的工具,可实现 NTP 和 NTS 协议。 ntpd-rs 存在安全漏洞。远程攻击者利用该漏洞在配置 NTS-KE 服务器时使 ntpd-rs 崩溃。
CVSS Information
N/A
Vulnerability Type
N/A