NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote authenticated users to cause a denial of service (daemon crash) via an invalid setting in a :config directive, related to the unpeer option.
{ "binaries": [ { "binary_name": "ntp", "binary_version": "1:4.2.6.p5+dfsg-3ubuntu2.14.04.11" }, { "binary_name": "ntpdate", "binary_version": "1:4.2.6.p5+dfsg-3ubuntu2.14.04.11" } ], "availability": "No subscription required" }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2017/UBUNTU-CVE-2017-6463.json"
{ "binaries": [ { "binary_name": "ntp", "binary_version": "1:4.2.8p4+dfsg-3ubuntu5.5" }, { "binary_name": "ntpdate", "binary_version": "1:4.2.8p4+dfsg-3ubuntu5.5" } ], "availability": "No subscription required" }