Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2015-5219
The ULOGTOD function in ntp.d in SNTP before 4.2.7p366 does not properly perform type conversions from a precision value to a double, which allows remote attackers to cause a denial of service (infinite loop) via a crafted NTP packet.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.017
EPSS Ranking
81.6%
CVSS Severity
CVSS v3 Score
7.5
CVSS v2 Score
5.0
References
http://aix.software.ibm.com/aix/efixes/security/ntp_advisory4.asc
http://bk1.ntp.org/ntp-dev/?PAGE=patch&REV=51786731Gr4-NOrTBC_a_uXO4wuGhg
http://lists.fedoraproject.org/pipermail/package-announce/2015-November/170926.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169167.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-September/166992.html
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00048.html
http://lists.opensuse.org/opensuse-updates/2016-12/msg00153.html
http://rhn.redhat.com/errata/RHSA-2016-0780.html
http://rhn.redhat.com/errata/RHSA-2016-2583.html
http://www.debian.org/security/2015/dsa-3388
http://www.openwall.com/lists/oss-security/2015/08/25/3
http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
http://www.securityfocus.com/bid/76473
http://www.ubuntu.com/usn/USN-2783-1
https://bugzilla.redhat.com/show_bug.cgi?id=1255118
https://cert-portal.siemens.com/productcert/pdf/ssa-497656.pdf
https://github.com/ntp-project/ntp/commit/5f295cd05c3c136d39f5b3e500a2d781bdbb59c8
https://us-cert.cisa.gov/ics/advisories/icsa-21-103-11
https://www-01.ibm.com/support/docview.wss?uid=isg3T1024157
https://www-01.ibm.com/support/docview.wss?uid=swg21985122
https://www-01.ibm.com/support/docview.wss?uid=swg21986956
https://www-01.ibm.com/support/docview.wss?uid=swg21988706
https://www-01.ibm.com/support/docview.wss?uid=swg21989542
https://www.ibm.com/support/home/docdisplay?lndocid=migr-5099409
http://aix.software.ibm.com/aix/efixes/security/ntp_advisory4.asc
http://bk1.ntp.org/ntp-dev/?PAGE=patch&REV=51786731Gr4-NOrTBC_a_uXO4wuGhg
http://lists.fedoraproject.org/pipermail/package-announce/2015-November/170926.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169167.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-September/166992.html
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00048.html
http://lists.opensuse.org/opensuse-updates/2016-12/msg00153.html
http://rhn.redhat.com/errata/RHSA-2016-0780.html
http://rhn.redhat.com/errata/RHSA-2016-2583.html
http://www.debian.org/security/2015/dsa-3388
http://www.openwall.com/lists/oss-security/2015/08/25/3
http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
http://www.securityfocus.com/bid/76473
http://www.ubuntu.com/usn/USN-2783-1
https://bugzilla.redhat.com/show_bug.cgi?id=1255118
https://cert-portal.siemens.com/productcert/pdf/ssa-497656.pdf
https://github.com/ntp-project/ntp/commit/5f295cd05c3c136d39f5b3e500a2d781bdbb59c8
https://us-cert.cisa.gov/ics/advisories/icsa-21-103-11
https://www-01.ibm.com/support/docview.wss?uid=isg3T1024157
https://www-01.ibm.com/support/docview.wss?uid=swg21985122
https://www-01.ibm.com/support/docview.wss?uid=swg21986956
https://www-01.ibm.com/support/docview.wss?uid=swg21988706
https://www-01.ibm.com/support/docview.wss?uid=swg21989542
https://www.ibm.com/support/home/docdisplay?lndocid=migr-5099409
Products affected by CVE-2015-5219
Ntp
»
Ntp
»
Version:
4.2.7
cpe:2.3:a:ntp:ntp:4.2.7
Suse
»
Linux Enterprise Debuginfo
»
Version:
11
cpe:2.3:a:suse:linux_enterprise_debuginfo:11
Siemens
»
Tim 4r-Id Dnp3
»
Version:
N/A
cpe:2.3:h:siemens:tim_4r-id_dnp3:-
Siemens
»
Tim 4r-Ie
»
Version:
N/A
cpe:2.3:h:siemens:tim_4r-ie:-
Canonical
»
Ubuntu Linux
»
Version:
12.04
cpe:2.3:o:canonical:ubuntu_linux:12.04
Canonical
»
Ubuntu Linux
»
Version:
14.04
cpe:2.3:o:canonical:ubuntu_linux:14.04
Canonical
»
Ubuntu Linux
»
Version:
15.04
cpe:2.3:o:canonical:ubuntu_linux:15.04
Canonical
»
Ubuntu Linux
»
Version:
15.10
cpe:2.3:o:canonical:ubuntu_linux:15.10
Debian
»
Debian Linux
»
Version:
7.0
cpe:2.3:o:debian:debian_linux:7.0
Debian
»
Debian Linux
»
Version:
8.0
cpe:2.3:o:debian:debian_linux:8.0
Fedoraproject
»
Fedora
»
Version:
21
cpe:2.3:o:fedoraproject:fedora:21
Fedoraproject
»
Fedora
»
Version:
22
cpe:2.3:o:fedoraproject:fedora:22
Fedoraproject
»
Fedora
»
Version:
23
cpe:2.3:o:fedoraproject:fedora:23
Novell
»
Leap
»
Version:
42.2
cpe:2.3:o:novell:leap:42.2
Opensuse
»
Leap
»
Version:
42.1
cpe:2.3:o:opensuse:leap:42.1
Oracle
»
Linux
»
Version:
6
cpe:2.3:o:oracle:linux:6
Redhat
»
Enterprise Linux Desktop
»
Version:
6.0
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0
Redhat
»
Enterprise Linux Desktop
»
Version:
7.0
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0
Redhat
»
Enterprise Linux Hpc Node
»
Version:
6.0
cpe:2.3:o:redhat:enterprise_linux_hpc_node:6.0
Redhat
»
Enterprise Linux Hpc Node
»
Version:
7.0
cpe:2.3:o:redhat:enterprise_linux_hpc_node:7.0
Redhat
»
Enterprise Linux Server
»
Version:
6.0
cpe:2.3:o:redhat:enterprise_linux_server:6.0
Redhat
»
Enterprise Linux Server
»
Version:
7.0
cpe:2.3:o:redhat:enterprise_linux_server:7.0
Redhat
»
Enterprise Linux Workstation
»
Version:
6.0
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0
Redhat
»
Enterprise Linux Workstation
»
Version:
7.0
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0
Siemens
»
Tim 4r-Id Dnp3 Firmware
»
Version:
Any
cpe:2.3:o:siemens:tim_4r-id_dnp3_firmware:*
Siemens
»
Tim 4r-Ie Firmware
»
Version:
N/A
cpe:2.3:o:siemens:tim_4r-ie_firmware:-
Siemens
»
Tim 4r-Ie Firmware
»
Version:
3.3
cpe:2.3:o:siemens:tim_4r-ie_firmware:3.3
Suse
»
Linux Enterprise Server
»
Version:
10
cpe:2.3:o:suse:linux_enterprise_server:10
Suse
»
Linux Enterprise Server
»
Version:
11
cpe:2.3:o:suse:linux_enterprise_server:11
Suse
»
Manager
»
Version:
2.1
cpe:2.3:o:suse:manager:2.1
Suse
»
Manager Proxy
»
Version:
2.1
cpe:2.3:o:suse:manager_proxy:2.1
Suse
»
Openstack Cloud
»
Version:
5
cpe:2.3:o:suse:openstack_cloud:5
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved