pkg:Debian/chrony

17 total CVEsHIGH4MEDIUM2

✅ Check your installed version

All known vulnerabilities

  • HIGH8.1CVE-2016-1567chrony - security update
    from 0, < 1.24-3.1+deb7u4
  • HIGH8.1CVE-2016-1567chrony - security update
    from 0, < 1.24-3+squeeze3
  • HIGH8.1CVE-2016-1567chrony - security update
    from 0, < 2.2.1-1
  • HIGH7.5CVE-2014-0021Chrony before 1.29.1 has traffic amplification in cmdmon protocol
    from 0, < 1.29.1-1
  • MEDIUM6.5CVE-2015-1853chrony before 1.31.1 does not properly protect state variables in authenticated symmetric NTP associations, which allows remote attackers w…
    from 0, < 1.30-2
  • MEDIUM6.0CVE-2020-14367A flaw was found in chrony versions before 3.5.1 when creating the PID file under the /var/run/chrony folder.
    from 0, < 3.5.1-1
  • CVE-2015-1822chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remot…
    from 0, < 1.30-2
  • CVE-2015-1821chrony - security update
    from 0, < 1.24-3.1+deb7u3
  • CVE-2015-1821chrony - security update
    from 0, < 1.30-2
  • CVE-2015-1821chrony - security update
    from 0, < 1.24-3+squeeze2
  • CVE-2012-4503cmdmon.c in Chrony before 1.29 allows remote attackers to obtain potentially sensitive information from stack memory via vectors related to…
    from 0, < 1.29-1
  • CVE-2012-4502chrony - several
    from 0, < 1.24-3+squeeze1
  • CVE-2012-4502chrony - several
    from 0, < 1.29-1
  • CVE-2010-0294chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a syslog message for each unauthorized cmdmon packet, which allows remot…
    from 0, < 1.23-7
  • CVE-2010-0293The client logging functionality in chronyd in Chrony before 1.23.1 does not restrict the amount of memory used for storage of client infor…
    from 0, < 1.23-7
  • CVE-2010-0292chrony - denial of service
    from 0, < 1.21z-5+etch1
  • CVE-2010-0292chrony - denial of service
    from 0, < 1.23-7