Back to search
CVE-2015-1821
Published: Apr 16, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute arbitrary code by configuring the (1) NTP or (2) cmdmon access with a subnet size that is indivisible by four and an address with a nonzero bit in the subnet remainder.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
DSA-3222
vendor-advisory
x_refsource_DEBIAN
[chrony-announce] 20150407 chrony-1.31.1 released (security)
mailing-list
x_refsource_MLIST
73955
vdb-entry
x_refsource_BID
GLSA-201507-01
vendor-advisory
x_refsource_GENTOO
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now