CVE-2004-0657

Integer overflow in the NTP daemon (NTPd) before 4.0 causes the NTP server to return the wrong date/time offset when a client requests a date/time that is more than 34 years away from the server's time.
References
Link Resource
http://marc.info/?l=bugtraq&m=108922292425219&w=2 Mailing List Third Party Advisory
http://www.kb.cert.org/vuls/id/584606 Patch Third Party Advisory US Government Resource
https://exchange.xforce.ibmcloud.com/vulnerabilities/15406 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:ntp:ntp:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:hp:tru64_unix:4.0f:patch_kit8:*:*:*:*:*:*
cpe:2.3:o:hp:tru64_unix:4.0g:patch_kit4:*:*:*:*:*:*
cpe:2.3:o:hp:tru64_unix:5.1b:patch_kit2:*:*:*:*:*:*
cpe:2.3:o:hp:tru64_unix:5.1b:patch_kit3:*:*:*:*:*:*
cpe:2.3:o:hp:tru64_unix:5.1b:patch_kit4:*:*:*:*:*:*
cpe:2.3:o:hp:tru64_unix:51.1a:patch_kit6:*:*:*:*:*:*

History

No history.

Information

Published : 2004-08-06 04:00

Updated : 2023-12-10 10:17


NVD link : CVE-2004-0657

Mitre link : CVE-2004-0657

CVE.ORG link : CVE-2004-0657


JSON object : View

Products Affected

hp

  • tru64_unix

ntp

  • ntp
CWE
CWE-190

Integer Overflow or Wraparound