{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-23T00:38:58.419","vulnerabilities":[{"cve":{"id":"CVE-2015-7849","sourceIdentifier":"cve@mitre.org","published":"2017-08-07T20:29:00.777","lastModified":"2026-06-17T00:33:15.383","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Use-after-free vulnerability in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote authenticated users to possibly execute arbitrary code or cause a denial of service (crash) via crafted packets."},{"lang":"es","value":"Una vulnerabilidad use-after-free en ntpd en NTP 4.2.x en versiones anteriores a la 4.2.8p4, y 4.3.x en versiones anteriores a la 4.3.77 permite que atacantes remotos autenticados tengan la posibilidad de ejecutar código arbitrario o provocar una denegación de servicio utilizando paquetes manipulados."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:P/I:P/A:P","baseScore":6.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-416"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:*:*:*:*:*:*:*:*","versionStartIncluding":"4.2.0","versionEndExcluding":"4.2.8","matchCriteriaId":"C240BAAB-8C12-4501-9DC6-FB877304E908"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:*:*:*:*:*:*:*:*","versionStartIncluding":"4.3.0","versionEndExcluding":"4.3.77","matchCriteriaId":"79494F07-6081-497D-8A2D-B05486599EAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:-:*:*:*:*:*:*","matchCriteriaId":"EEA51D83-5841-4335-AF07-7A43C118CAAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p1:*:*:*:*:*:*","matchCriteriaId":"C855BBD2-2B38-4EFF-9DBE-CA61CCACD0DE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p1-beta1:*:*:*:*:*:*","matchCriteriaId":"49ADE0C3-F75C-4EC0-8805-56013F0EB92C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p1-beta2:*:*:*:*:*:*","matchCriteriaId":"D8FF625A-EFA3-43D1-8698-4A37AE31A07C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p1-beta3:*:*:*:*:*:*","matchCriteriaId":"E3B99BBD-97FE-4615-905A-A614592226F8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p1-beta4:*:*:*:*:*:*","matchCriteriaId":"E7A9AD3A-F030-4331-B52A-518BD963AB8A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p1-beta5:*:*:*:*:*:*","matchCriteriaId":"C293B8BE-6691-4944-BCD6-25EB98CABC73"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p1-rc1:*:*:*:*:*:*","matchCriteriaId":"CEA650F8-2576-494A-A861-61572CA319D0"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p1-rc2:*:*:*:*:*:*","matchCriteriaId":"4ED21EE8-7CBF-4BC5-BFC3-185D41296238"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p2:*:*:*:*:*:*","matchCriteriaId":"C76A0B44-13DE-4173-8D05-DA54F6A71759"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p2-rc1:*:*:*:*:*:*","matchCriteriaId":"1450241C-2F6D-4122-B33C-D78D065BA403"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p2-rc2:*:*:*:*:*:*","matchCriteriaId":"721AFD22-91D3-488E-A5E6-DD84C86E412B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p2-rc3:*:*:*:*:*:*","matchCriteriaId":"8D6ADDB1-2E96-4FF6-AE95-4B06654D38B0"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p3:*:*:*:*:*:*","matchCriteriaId":"41E44E9F-6383-4E12-AEDC-B653FEA77A48"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p3-rc1:*:*:*:*:*:*","matchCriteriaId":"466D9A37-2658-4695-9429-0C6BF4A631C2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p3-rc2:*:*:*:*:*:*","matchCriteriaId":"99774181-5F12-446C-AC2C-DB1C52295EED"},{"vulnerable":true,"criteria":"cpe:2.3:a:ntp:ntp:4.2.8:p3-rc3:*:*:*:*:*:*","matchCriteriaId":"4427EE6D-3F79-4FF5-B3EC-EE6BD01562CE"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netapp:oncommand_balance:-:*:*:*:*:*:*:*","matchCriteriaId":"7DCBCC5D-C396-47A8-ADF4-D3A2C4377FB1"},{"vulnerable":true,"criteria":"cpe:2.3:a:netapp:oncommand_performance_manager:-:*:*:*:*:*:*:*","matchCriteriaId":"212E1878-1B9A-4CB4-A1CE-EAD60B867161"},{"vulnerable":true,"criteria":"cpe:2.3:a:netapp:oncommand_unified_manager:-:*:*:*:*:clustered_data_ontap:*:*","matchCriteriaId":"95B173E0-1475-4F8D-A982-86F36BE3DD4A"},{"vulnerable":true,"criteria":"cpe:2.3:o:netapp:clustered_data_ontap:-:*:*:*:*:*:*:*","matchCriteriaId":"1FED6CAE-D97F-49E0-9D00-1642A3A427B4"},{"vulnerable":true,"criteria":"cpe:2.3:o:netapp:data_ontap:-:*:*:*:*:7-mode:*:*","matchCriteriaId":"392A1364-2739-450D-9E19-DFF93081C2C6"}]}]}],"references":[{"url":"http://support.ntp.org/bin/view/Main/NtpBug2916","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/77276","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securitytracker.com/id/1033951","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=1274257","source":"cve@mitre.org","tags":["Issue Tracking","Third Party Advisory","VDB Entry"]},{"url":"https://security.gentoo.org/glsa/201607-15","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://security.netapp.com/advisory/ntap-20171004-0001/","source":"cve@mitre.org","tags":["Third Party Advisory"]},{"url":"http://support.ntp.org/bin/view/Main/NtpBug2916","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/77276","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securitytracker.com/id/1033951","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=1274257","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Issue Tracking","Third Party Advisory","VDB Entry"]},{"url":"https://security.gentoo.org/glsa/201607-15","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://security.netapp.com/advisory/ntap-20171004-0001/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]}]}}]}