Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2015-1853 chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers with knowle… Chrony 1.31.1+ Fix from $1,6002019-12-09 HIGH 8.1 CVE-2016-1567 chrony before 1.31.2 and 2.x before 2.2.1 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote att… Chrony after 1.31.1 Fix from $1,9502016-01-26 MEDIUM 5.0 CVE-2012-4502 Multiple integer overflows in pktlength.c in Chrony before 1.29 allow remote attackers to cause a denial of service (crash) via a crafted (1) REQ_SUB… Chrony after 1.28 Fix from $1,6002013-11-05 MEDIUM 5.0 CVE-2012-4503 cmdmon.c in Chrony before 1.29 allows remote attackers to obtain potentially sensitive information from stack memory via vectors related to (1) an in… Chrony after 1.28 Fix from $1,6002013-11-05 MEDIUM 5.0 CVE-2010-0293 The client logging functionality in chronyd in Chrony before 1.23.1 does not restrict the amount of memory used for storage of client information, wh… Chrony after 1.23-pre1 Fix from $1,6002010-02-08 MEDIUM 5.0 CVE-2010-0294 chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a syslog message for each unauthorized cmdmon packet, which allows remote attacker… Chrony after 1.23-pre1 Fix from $1,6002010-02-08 MEDIUM 5.0 CVE-2010-0292 The read_from_cmd_socket function in cmdmon.c in chronyd in Chrony before 1.23.1, and 1.24-pre1, allows remote attackers to cause a denial of service… Chrony after 1.23-pre1 Fix from $1,6002010-02-08