CNNVD-ID编号 | CNNVD-201903-316 | CVE编号 | CVE-2019-8936 |
发布时间 | 2019-03-08 | 更新时间 | 2020-10-09 |
漏洞类型 | 代码问题 | 漏洞来源 | Ubuntu,Magnus Stubman,Slackware Security Team,Magnus Klaaborg Stubman,Gentoo |
危险等级 | 高危 | 威胁类型 | 远程 |
厂商 | N/A |
Network Time Protocol(NTP,网络时间协议)是一种以数据包交换把两台电脑的时钟同步化的网络协议。
NTP 4.2.8p13之前版本中存在代码问题漏洞。远程攻击者可利用该漏洞造成NTP崩溃,导致拒绝服务。
目前厂商已发布升级了NTP 代码问题漏洞的补丁,NTP 代码问题漏洞的补丁获取链接:
http://support.ntp.org/bin/view/Main/SecurityNotice#Recent_Vulnerabilities
来源:GENTOO
来源:CONFIRM
来源:CONFIRM
链接:https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbux03962en_us
来源:MISC
链接:https://packetstormsecurity.com/files/152915/FreeBSD-Security-Advisory-FreeBSD-SA-19-04.ntp.html
来源:FEDORA
来源:BUGTRAQ
来源:CONFIRM
来源:CONFIRM
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00036.html
来源:MISC
来源:FREEBSD
链接:https://security.FreeBSD.org/advisories/FreeBSD-SA-19:04.ntp.asc
来源:UBUNTU
来源:FEDORA
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00032.html
来源:FEDORA
来源:www.suse.com
链接:https://www.suse.com/support/update/announcement/2019/suse-su-201913991-1.html
来源:www.ibm.com
来源:www.vuxml.org
链接:http://www.vuxml.org/freebsd/c2576e14-36e2-11e9-9eda-206a8a720317.html
来源:www.suse.com
链接:https://www.suse.com/support/update/announcement/2019/suse-su-20190789-1.html
来源:www.securityfocus.com
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/159452/Ubuntu-Security-Notice-USN-4563-1.html
来源:www.auscert.org.au
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/152133/Gentoo-Linux-Security-Advisory-201903-15.html
来源:www.auscert.org.au
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/152022/Slackware-Security-Advisory-ntp-Updates.html
来源:nvd.nist.gov
来源:www.auscert.org.au
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/NTP-org-NULL-pointer-dereference-via-Authenticated-Mode-6-28701
来源:www.auscert.org.au
暂无