Description
chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-193-1 | chrony security update |
Debian DSA |
DSA-3222-1 | chrony security update |
EUVD |
EUVD-2015-1962 | chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowledge of NTP peering to cause a denial of service (inability to synchronize) via random timestamps in crafted NTP data packets. |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T04:54:16.335Z
Reserved: 2015-02-17T00:00:00.000Z
Link: CVE-2015-1853
No data.
Status : Modified
Published: 2019-12-09T19:15:14.150
Modified: 2024-11-21T02:26:16.390
Link: CVE-2015-1853
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD