CVE Vulnerabilities

CVE-2018-7185

Published: Mar 06, 2018 | Modified: Jan 14, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
3.1 LOW
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The protocol engine in ntp 4.2.6 before 4.2.8p11 allows a remote attackers to cause a denial of service (disruption) by continually sending a packet with a zero-origin timestamp and source IP address of the other side of an interleaved association causing the victim ntpd to reset its association.

Affected Software

NameVendorStart VersionEnd Version
NtpNtp4.2.6 (including)4.2.8 (excluding)
NtpNtp4.2.8 (including)4.2.8 (including)
NtpNtp4.2.8-p1 (including)4.2.8-p1 (including)
NtpNtp4.2.8-p1-beta1 (including)4.2.8-p1-beta1 (including)
NtpNtp4.2.8-p1-beta2 (including)4.2.8-p1-beta2 (including)
NtpNtp4.2.8-p1-beta3 (including)4.2.8-p1-beta3 (including)
NtpNtp4.2.8-p1-beta4 (including)4.2.8-p1-beta4 (including)
NtpNtp4.2.8-p1-beta5 (including)4.2.8-p1-beta5 (including)
NtpNtp4.2.8-p1-rc1 (including)4.2.8-p1-rc1 (including)
NtpNtp4.2.8-p1-rc2 (including)4.2.8-p1-rc2 (including)
NtpNtp4.2.8-p10 (including)4.2.8-p10 (including)
NtpNtp4.2.8-p2 (including)4.2.8-p2 (including)
NtpNtp4.2.8-p2-rc1 (including)4.2.8-p2-rc1 (including)
NtpNtp4.2.8-p2-rc2 (including)4.2.8-p2-rc2 (including)
NtpNtp4.2.8-p2-rc3 (including)4.2.8-p2-rc3 (including)
NtpNtp4.2.8-p3 (including)4.2.8-p3 (including)
NtpNtp4.2.8-p3-rc1 (including)4.2.8-p3-rc1 (including)
NtpNtp4.2.8-p3-rc2 (including)4.2.8-p3-rc2 (including)
NtpNtp4.2.8-p3-rc3 (including)4.2.8-p3-rc3 (including)
NtpNtp4.2.8-p4 (including)4.2.8-p4 (including)
NtpNtp4.2.8-p5 (including)4.2.8-p5 (including)
NtpNtp4.2.8-p6 (including)4.2.8-p6 (including)
NtpNtp4.2.8-p7 (including)4.2.8-p7 (including)
NtpNtp4.2.8-p8 (including)4.2.8-p8 (including)
NtpNtp4.2.8-p9 (including)4.2.8-p9 (including)
NtpUbuntuartful*
NtpUbuntubionic*
NtpUbuntucosmic*
NtpUbuntudevel*
NtpUbuntuesm-apps/bionic*
NtpUbuntuesm-infra-legacy/trusty*
NtpUbuntuesm-infra/xenial*
NtpUbuntutrusty*
NtpUbuntutrusty/esm*
NtpUbuntuupstream*
NtpUbuntuxenial*

References