vulnerability

Amazon Linux AMI: CVE-2015-7977: Security patch for ntp (ALAS-2016-649)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Feb 9, 2016
Added
Sep 19, 2018
Modified
May 7, 2019

Description

ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command.

Solution

amazon-linux-upgrade-ntp
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.