Showing 1 vulnerability on this page for cfnts

Signals CISA KEV Ransomware Nuclei
Cloudflare vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Out of Bounds Slice index in cfnts leads to remote panic

An unchecked read in NTP server in github.com/cloudflare/cfnts prior to commit 783490b https://github.com/cloudflare/cfnts/commit/783490b913f05e508a492cd7b02e3c4ec2297b71  enabled a remote attacker to trigger a panic by sending an NTSAuthenticator packet with extension length longer than the packet contents.

CWE-119CWE-125Jun 14, 2023
CVSS8.6v3.1EPSS2.24%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX