CVE-2009-1252

Source
https://nvd.nist.gov/vuln/detail/CVE-2009-1252
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2009-1252.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2009-1252
Downstream
Related
Published
2009-05-19T19:30:00Z
Modified
2025-04-09T00:30:58Z
Summary
[none]
Details

Stack-based buffer overflow in the cryptorecv function in ntpcrypto.c in ntpd in NTP before 4.2.4p7 and 4.2.5 before 4.2.5p74, when OpenSSL and autokey are enabled, allows remote attackers to execute arbitrary code via a crafted packet containing an extension field.

References

Affected packages