Get a Pentest and security assessment of your IT network.

2021-current

CVE-2015-1853 – chrony before 1.31.1 does not properly protect state variables in authent

chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1853

Reference (s):

  • http://chrony.tuxfamily.org/News.html
  • https://security.gentoo.org/glsa/201507-01
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-4743 - Multiple cross-site scripting (XSS) vulnerabilities in (1) search_ajax.tp

2021-current

CVE-2014-9838 - magick/cache.c in ImageMagick 6.8.9-9 allows remote attackers to cause a

2021-current

CVE-2020-10447 - The way URIs are handled in admin/header.php in Chadha PHPKB Standard Mul