← Back

CVE-2020-13817

nvd nist
Published: Jun 4, 2020Modified: Jun 17, 2026

JSON object

Loading...
7.4
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H
Exploitability: 2.2 / Impact: 5.2
Source: NVD

Description

ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 allows remote attackers to cause a denial of service (daemon exit or system time change) by predicting transmit timestamps for use in spoofed packets. The victim must be relying on unauthenticated IPv4 time sources. There must be an off-path attacker who can query time from the victim's ntpd instance.

Affected (59)

Show all products
1 product
Ntp
17 products
Cloud Backup
Clustered Data Ontap
Data Ontap
Element Software
Hci Management Node
Ontap Tools
Solidfire
Hci Compute Node Firmware
H410c Firmware
H300s Firmware
H500s Firmware
H700s Firmware
H300e Firmware
H500e Firmware
H700e Firmware
H410s Firmware
1 product
Leap
6 products
M10 1 Firmware
M10 4 Firmware
M10 4s Firmware
M12 1 Firmware
M12 2 Firmware
M12 2s Firmware
Configuration A
29 vulnerable
Vulnerable SoftwareAffected Versions
Ntp
Before 4.2.8
From 4.3.0 to 4.3.100
Version 4.2.8
Version 4.2.8 p1-beta1
Version 4.2.8 p1-beta2
Version 4.2.8 p1-beta3
Version 4.2.8 p1-beta4
Version 4.2.8 p1-beta5
Version 4.2.8 p1-rc1
Version 4.2.8 p1-rc2
Version 4.2.8 p10
Version 4.2.8 p11
Version 4.2.8 p12
Version 4.2.8 p13
Version 4.2.8 p1
Version 4.2.8 p2-rc1
Version 4.2.8 p2-rc2
Version 4.2.8 p2-rc3
Version 4.2.8 p2
Version 4.2.8 p3-rc1
Version 4.2.8 p3-rc2
Version 4.2.8 p3-rc3
Version 4.2.8 p3
Version 4.2.8 p4
Version 4.2.8 p5
Version 4.2.8 p6
Version 4.2.8 p7
Version 4.2.8 p8
Version 4.2.8 p9
Configuration B
8 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
Hci Compute Node
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H410c
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H300s
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H500s
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H700s
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H300e
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H500e
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H700e
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H410s
All versions
Configuration L
2 vulnerable
Vulnerable SoftwareAffected Versions
Opensuse
Version 15.1
Version 15.2
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before xcp2410
Running on/withPlatform Versions
Fujitsu
M10 1
All versions
Configuration N
1 vulnerable
Vulnerable SoftwareAffected Versions
Before xcp2410
Configuration O
1 vulnerable
Vulnerable SoftwareAffected Versions
Before xcp2410
Configuration P
1 vulnerable
Vulnerable SoftwareAffected Versions
Before xcp2410
Configuration Q
1 vulnerable
Vulnerable SoftwareAffected Versions
Before xcp2410
Configuration R
1 vulnerable
Vulnerable SoftwareAffected Versions
Before xcp2410
Configuration S
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before xcp3110
Running on/withPlatform Versions
Fujitsu
M10 4
All versions
Configuration T
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before xcp3110
Running on/withPlatform Versions
Fujitsu
M10 4s
All versions
Configuration U
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before xcp3110
Running on/withPlatform Versions
Fujitsu
M12 1
All versions
Configuration V
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before xcp3110
Running on/withPlatform Versions
Fujitsu
M12 2
All versions
Configuration W
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before xcp3110
Running on/withPlatform Versions
Fujitsu
M12 2s
All versions

References (14)

Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Issue TrackingVendor Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory

Timeline

No history available yet.