Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-5146

ntpd in ntp before 4.2.8p3 with remote configuration enabled allows remote authenticated users with knowledge of the configuration password and access to a computer entrusted to perform remote configuration to cause a denial of service (service crash) via a NULL byte in a crafted configuration directive packet.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.025
EPSS Ranking 84.5%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 3.5
References
Products affected by CVE-2015-5146
  • Ntp » Ntp » Version: 4.2.2
    cpe:2.3:a:ntp:ntp:4.2.2
  • Ntp » Ntp » Version: 4.2.4
    cpe:2.3:a:ntp:ntp:4.2.4
  • Ntp » Ntp » Version: 4.2.6
    cpe:2.3:a:ntp:ntp:4.2.6
  • Ntp » Ntp » Version: 4.2.7
    cpe:2.3:a:ntp:ntp:4.2.7
  • Ntp » Ntp » Version: 4.2.8
    cpe:2.3:a:ntp:ntp:4.2.8
  • Debian » Debian Linux » Version: 7.0
    cpe:2.3:o:debian:debian_linux:7.0
  • Debian » Debian Linux » Version: 8.0
    cpe:2.3:o:debian:debian_linux:8.0
  • Fedoraproject » Fedora » Version: 21
    cpe:2.3:o:fedoraproject:fedora:21
  • Fedoraproject » Fedora » Version: 22
    cpe:2.3:o:fedoraproject:fedora:22
  • Fedoraproject » Fedora » Version: 23
    cpe:2.3:o:fedoraproject:fedora:23


Contact Us

Shodan ® - All rights reserved