The monlist feature in ntp_request.c in ntpd in NTP before 4.2.7p26 allows remote attackers to cause a denial of service (traffic amplification) via forged (1) REQ_MON_GETLIST or (2) REQ_MON_GETLIST_1 requests, as exploited in the wild in December 2013.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T17:06:52.374Z
Reserved: 2013-08-15T00:00:00
Link: CVE-2013-5211
No data.
Status : Deferred
Published: 2014-01-02T14:59:03.470
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-5211
OpenCVE Enrichment
No data.
Weaknesses