Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:23634
HistoryApr 10, 2020 - 12:32 a.m.

Stack-based Buffer Overflow

2020-04-1000:32:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.043 Low

EPSS

Percentile

92.4%

The Network Time Protocol (NTP) is vulnerable to Stack-based Buffer Overflow. A buffer overflow flaw was found in the ntpq diagnostic command. A malicious, remote server could send a specially-crafted reply to an ntpq request that could crash ntpq or, potentially, execute arbitrary code with the privileges of the user running the ntpq command.

References