vendor:
ntpsec
by:
Magnus Klaaborg Stubman
6.5
CVSS
MEDIUM
Denial of Service (DoS)
CWE
Product Name: ntpsec
Affected Version From: All versions of ntpsec including, and prior to 1.1.2
Affected Version To: 1.1.2002
Patch Exists: YES
Related CWE: CVE-2019-6442
CPE:
Platforms Tested:
2019
ntpsec 1.1.2 authenticated out of bounds write proof of concept DoS
This exploit allows an authenticated user to perform an out of bounds write, leading to a denial of service condition.
Mitigation:
Upgrade to version 1.1.2 or later.