imPC@ndo IT

Tracker / CVE-2015-7704

CVE-2015-7704

High 7.5

The ntpd client in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service via a number of crafted "KOD" messages.

Affected products and versions

citrix xenserver
debian debian_linux
mcafee enterprise_security_manager · … → 10.4.0
mcafee enterprise_security_manager · 11.0.0 → 11.2.0
netapp clustered_data_ontap
netapp data_ontap
netapp oncommand_performance_manager
netapp oncommand_unified_manager
ntp ntp
ntp ntp · 4.2.0 → 4.2.8
ntp ntp · 4.3.0 → 4.3.77
redhat enterprise_linux_desktop
redhat enterprise_linux_server
redhat enterprise_linux_server_aus
redhat enterprise_linux_server_eus
redhat enterprise_linux_server_tus
redhat enterprise_linux_workstation

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References