← Back

CVE-2016-2518

nvd nist
Published: Jan 30, 2017Modified: May 13, 2026

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Exploitability: 3.9 / Impact: 1.4
Source: NVD

Description

The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.

Affected (124)

Show all products
1 product
Ntp
1 product
Debian Linux
5 products
Clustered Data Ontap
Data Ontap
Oncommand Balance
Oncommand Performance Manager
2 products
Linux
6 products
Enterprise Linux Desktop
Enterprise Linux Server
Enterprise Linux Server Aus
Enterprise Linux Server Eus
Enterprise Linux Server Tus
Enterprise Linux Workstation
1 product
Freebsd
1 product
Configuration A
24 vulnerable
Vulnerable SoftwareAffected Versions
Ntp
Before 4.2.8
From 4.3.0 to 4.3.92
Version 4.2.8
Version 4.2.8 p1-beta1
Version 4.2.8 p1-beta2
Version 4.2.8 p1-beta3
Version 4.2.8 p1-beta4
Version 4.2.8 p1-beta5
Version 4.2.8 p1-rc1
Version 4.2.8 p1-rc2
Version 4.2.8 p1
Version 4.2.8 p2-rc1
Version 4.2.8 p2-rc2
Version 4.2.8 p2-rc3
Version 4.2.8 p2
Version 4.2.8 p3-rc1
Version 4.2.8 p3-rc2
Version 4.2.8 p3-rc3
Version 4.2.8 p3
Version 4.2.8 p4
Version 4.2.8 p5
Version 4.2.8 p6
Version 4.2.8 p7
Version 4.2.8 p8
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 10.0
Version 8.0
Version 9.0
Configuration C
5 vulnerable
Configuration D
5 vulnerable
Vulnerable SoftwareAffected Versions
Oracle
Version 10.0.0
Version 10.0.1
Version 12.0.0
Oracle
Version 6
Version 7
Configuration E
17 vulnerable
Configuration F
69 vulnerable
Vulnerable SoftwareAffected Versions
Freebsd
Version 10.1
Version 10.1 p10
Version 10.1 p12
Version 10.1 p15
Version 10.1 p16
Version 10.1 p17
Version 10.1 p18
Version 10.1 p19
Version 10.1 p1
Version 10.1 p22
Version 10.1 p24
Version 10.1 p25
Version 10.1 p26
Version 10.1 p27
Version 10.1 p28
Version 10.1 p29
Version 10.1 p2
Version 10.1 p30
Version 10.1 p31
Version 10.1 p3
Version 10.1 p4
Version 10.1 p5
Version 10.1 p6
Version 10.1 p7
Version 10.1 p8
Version 10.1 p9
Version 10.2
Version 10.2 p10
Version 10.2 p11
Version 10.2 p12
Version 10.2 p13
Version 10.2 p14
Version 10.2 p1
Version 10.2 p2
Version 10.2 p5
Version 10.2 p7
Version 10.2 p8
Version 10.2 p9
Version 10.3
Version 9.3
Version 9.3 p10
Version 9.3 p12
Version 9.3 p13
Version 9.3 p16
Version 9.3 p19
Version 9.3 p1
Version 9.3 p20
Version 9.3 p21
Version 9.3 p22
Version 9.3 p23
Version 9.3 p24
Version 9.3 p25
Version 9.3 p28
Version 9.3 p2
Version 9.3 p30
Version 9.3 p31
Version 9.3 p32
Version 9.3 p33
Version 9.3 p34
Version 9.3 p35
Version 9.3 p36
Version 9.3 p38
Version 9.3 p39
Version 9.3 p3
Version 9.3 p5
Version 9.3 p6
Version 9.3 p7
Version 9.3 p8
Version 9.3 p9
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Simatic Net Cp 443 1 Opc Ua
All versions

References (66)

Source: cve@mitre.org
Broken Link
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party AdvisoryVDB Entry
Source: cve@mitre.org
Third Party AdvisoryVDB Entry
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.