Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2016-2518

The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.

  • Published: Jan 30, 2017
  • Updated: Apr 13, 2023
  • CVE: CVE-2016-2518
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.3
  • AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

CWEs:

Software From Fixed in
ntp / ntp 4.2.8-p5 4.2.8-p5.x
ntp / ntp 4.2.8-p2 4.2.8-p2.x
ntp / ntp 4.2.8-p3 4.2.8-p3.x
ntp / ntp 4.2.8-p4 4.2.8-p4.x
ntp / ntp 4.2.8-p7 4.2.8-p7.x
ntp / ntp 4.2.8-p8 4.2.8-p8.x
ntp / ntp 4.2.8-p6 4.2.8-p6.x
ntp / ntp 4.2.8-p1 4.2.8-p1.x
ntp / ntp 4.2.8-p3-rc3 4.2.8-p3-rc3.x
ntp / ntp 4.2.8-p3-rc2 4.2.8-p3-rc2.x
ntp / ntp 4.2.8-p3-rc1 4.2.8-p3-rc1.x
ntp / ntp 4.2.8-p2-rc3 4.2.8-p2-rc3.x
ntp / ntp 4.2.8-p2-rc2 4.2.8-p2-rc2.x
ntp / ntp 4.2.8-p2-rc1 4.2.8-p2-rc1.x
ntp / ntp 4.2.8-p1-rc2 4.2.8-p1-rc2.x
ntp / ntp 4.2.8-p1-rc1 4.2.8-p1-rc1.x
ntp / ntp 4.2.8-p1-beta5 4.2.8-p1-beta5.x
ntp / ntp 4.2.8-p1-beta4 4.2.8-p1-beta4.x
ntp / ntp 4.2.8-p1-beta3 4.2.8-p1-beta3.x
ntp / ntp 4.2.8-p1-beta2 4.2.8-p1-beta2.x
ntp / ntp 4.2.8-p1-beta1 4.2.8-p1-beta1.x
ntp / ntp 4.3.0 4.3.92
ntp / ntp 4.2.8 4.2.8.x
ntp / ntp - 4.2.8
debian / debian_linux 8.0 8.0.x
debian / debian_linux 9.0 9.0.x
debian / debian_linux 10.0 10.0.x
oracle / communications_user_data_repository 10.0.1 10.0.1.x
oracle / linux 6 6.x
oracle / linux 7 7.x
oracle / communications_user_data_repository 12.0.0 12.0.0.x
oracle / communications_user_data_repository 10.0.0 10.0.0.x
redhat / enterprise_linux_desktop 7.0 7.0.x
redhat / enterprise_linux_server_aus 7.2 7.2.x
redhat / enterprise_linux_server_tus 7.2 7.2.x
redhat / enterprise_linux_server 7.0 7.0.x
redhat / enterprise_linux_server_eus 7.2 7.2.x
redhat / enterprise_linux_server 6.0 6.0.x
redhat / enterprise_linux_workstation 6.0 6.0.x
redhat / enterprise_linux_server_tus 7.3 7.3.x
redhat / enterprise_linux_server_aus 7.4 7.4.x
redhat / enterprise_linux_server_eus 7.3 7.3.x
redhat / enterprise_linux_server_eus 7.4 7.4.x
redhat / enterprise_linux_server_eus 7.5 7.5.x
redhat / enterprise_linux_server_tus 7.6 7.6.x
redhat / enterprise_linux_server_eus 7.6 7.6.x
redhat / enterprise_linux_server_aus 7.6 7.6.x
redhat / enterprise_linux_server_eus 7.7 7.7.x
redhat / enterprise_linux_server_tus 7.7 7.7.x
freebsd / freebsd 9.3 9.3.x
freebsd / freebsd 10.2 10.2.x
freebsd / freebsd 9.3-p1 9.3-p1.x
freebsd / freebsd 9.3-p10 9.3-p10.x
freebsd / freebsd 9.3-p12 9.3-p12.x
freebsd / freebsd 9.3-p13 9.3-p13.x
freebsd / freebsd 9.3-p16 9.3-p16.x
freebsd / freebsd 9.3-p19 9.3-p19.x
freebsd / freebsd 9.3-p2 9.3-p2.x
freebsd / freebsd 9.3-p20 9.3-p20.x
freebsd / freebsd 9.3-p3 9.3-p3.x
freebsd / freebsd 9.3-p5 9.3-p5.x
freebsd / freebsd 9.3-p6 9.3-p6.x
freebsd / freebsd 9.3-p7 9.3-p7.x
freebsd / freebsd 9.3-p8 9.3-p8.x
freebsd / freebsd 9.3-p9 9.3-p9.x
freebsd / freebsd 10.1 10.1.x
freebsd / freebsd 10.1-p1 10.1-p1.x
freebsd / freebsd 10.1-p10 10.1-p10.x
freebsd / freebsd 10.1-p12 10.1-p12.x
freebsd / freebsd 10.1-p15 10.1-p15.x
freebsd / freebsd 10.1-p16 10.1-p16.x
freebsd / freebsd 10.1-p2 10.1-p2.x
freebsd / freebsd 10.1-p3 10.1-p3.x
freebsd / freebsd 10.1-p4 10.1-p4.x
freebsd / freebsd 10.1-p5 10.1-p5.x
freebsd / freebsd 10.1-p6 10.1-p6.x
freebsd / freebsd 10.1-p7 10.1-p7.x
freebsd / freebsd 10.1-p8 10.1-p8.x
freebsd / freebsd 10.1-p9 10.1-p9.x
freebsd / freebsd 10.2-p1 10.2-p1.x
freebsd / freebsd 10.2-p10 10.2-p10.x
freebsd / freebsd 10.2-p2 10.2-p2.x
freebsd / freebsd 10.2-p7 10.2-p7.x
freebsd / freebsd 10.2-p5 10.2-p5.x
freebsd / freebsd 10.2-p8 10.2-p8.x
freebsd / freebsd 10.2-p9 10.2-p9.x
freebsd / freebsd 10.1-p17 10.1-p17.x
freebsd / freebsd 10.1-p18 10.1-p18.x
freebsd / freebsd 10.1-p19 10.1-p19.x
freebsd / freebsd 10.1-p22 10.1-p22.x
freebsd / freebsd 10.1-p24 10.1-p24.x
freebsd / freebsd 10.1-p25 10.1-p25.x
freebsd / freebsd 10.1-p26 10.1-p26.x
freebsd / freebsd 10.1-p27 10.1-p27.x
freebsd / freebsd 9.3-p21 9.3-p21.x
freebsd / freebsd 9.3-p22 9.3-p22.x
freebsd / freebsd 9.3-p23 9.3-p23.x
freebsd / freebsd 9.3-p24 9.3-p24.x
freebsd / freebsd 9.3-p25 9.3-p25.x
freebsd / freebsd 9.3-p28 9.3-p28.x
freebsd / freebsd 9.3-p30 9.3-p30.x
freebsd / freebsd 9.3-p31 9.3-p31.x
freebsd / freebsd 9.3-p32 9.3-p32.x
freebsd / freebsd 9.3-p33 9.3-p33.x
freebsd / freebsd 9.3-p34 9.3-p34.x
freebsd / freebsd 10.2-p11 10.2-p11.x
freebsd / freebsd 10.2-p12 10.2-p12.x
freebsd / freebsd 10.2-p13 10.2-p13.x
freebsd / freebsd 10.2-p14 10.2-p14.x
freebsd / freebsd 10.3 10.3.x
freebsd / freebsd 10.1-p28 10.1-p28.x
freebsd / freebsd 10.1-p29 10.1-p29.x
freebsd / freebsd 10.1-p30 10.1-p30.x
freebsd / freebsd 10.1-p31 10.1-p31.x
freebsd / freebsd 9.3-p35 9.3-p35.x
freebsd / freebsd 9.3-p36 9.3-p36.x
freebsd / freebsd 9.3-p38 9.3-p38.x
freebsd / freebsd 9.3-p39 9.3-p39.x
siemens / simatic_net_cp_443-1_opc_ua_firmware - -