VYPR
Unrated severityNVD Advisory· Published Apr 14, 2009· Updated Apr 23, 2026

CVE-2009-0159

CVE-2009-0159

Description

Stack-based buffer overflow in the cookedprint function in ntpq/ntpq.c in ntpq in NTP before 4.2.4p7-RC2 allows remote NTP servers to execute arbitrary code via a crafted response.

Affected products

30
  • Ntp/Ntp29 versions
    cpe:2.3:a:ntp:ntp:4.0.72:*:*:*:*:*:*:*+ 28 more
    • cpe:2.3:a:ntp:ntp:4.0.72:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.73:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.90:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.91:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.92:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.93:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.94:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.95:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.96:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.97:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.98:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.0.99:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.2:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.2p1:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.2p2:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.2p3:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.2p4:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.4:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.4p0:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.4p1:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.4p2:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.4p3:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.4p4:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.4p5:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:4.2.4p6:*:*:*:*:*:*:*
    • cpe:2.3:a:ntp:ntp:*:rc1:*:*:*:*:*:*range: <=4.2.4p7

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

46

News mentions

0

No linked articles in our index yet.