Stack-based buffer overflow in the crypto_recv function in ntp_crypto.c in ntpd in NTP before 4.2.4p7 and 4.2.5 before 4.2.5p74, when OpenSSL and autokey are enabled, allows remote attackers to execute arbitrary code via a crafted packet containing an extension field.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade ntp | Dec 1, 2016 | May 19, 2009 |
| Debian | — | Upgrade ntp | Jul 30, 2024 | May 19, 2009 |
| Freebsd | — | Upgrade ntp | Dec 10, 2025 | May 20, 2009 |
| Gentoo Linux | — | Upgrade net-misc/ntp. | Oct 30, 2017 | May 19, 2009 |
| Hpux | — | Apply patch PHNE_39871 from HPApply patch PHNE_39873 from HPApply patch PHNE_39872 from HP | Aug 11, 2017 | May 19, 2009 |
| Ntp | — | Upgrade to the latest version of NTP | Feb 23, 2023 | May 19, 2009 |
| Oracle_linux | — | Upgrade ntp | Oct 16, 2024 | May 19, 2009 |
| Suse | — | Upgrade ntp-docUpgrade ntp | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade ntpUpgrade ntp-server | Nov 8, 2024 | May 19, 2009 |
| Vmsa 2009 0016 5 Third Party Library Update | — | Upgrade VMware ESXi 3.5 to build number 226117Upgrade VMware ESXi 4.0 to build number 208167 | Sep 2, 2010 | May 19, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub