First published: Wed May 15 2019(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NetApp Clustered Data ONTAP | <9.2 | |
Netapp Data Ontap 7-mode | ||
Fedoraproject Fedora | =28 | |
Fedoraproject Fedora | =29 | |
Fedoraproject Fedora | =30 | |
openSUSE Leap | =15.0 | |
openSUSE Leap | =42.3 | |
Hpe Hpux-ntp | <c.4.2.8.4.0 | |
NTP ntp | <4.2.8 | |
NTP ntp | =4.2.8 | |
NTP ntp | =4.2.8-p1 | |
NTP ntp | =4.2.8-p1-beta1 | |
NTP ntp | =4.2.8-p1-beta2 | |
NTP ntp | =4.2.8-p1-beta3 | |
NTP ntp | =4.2.8-p1-beta4 | |
NTP ntp | =4.2.8-p1-beta5 | |
NTP ntp | =4.2.8-p1-rc1 | |
NTP ntp | =4.2.8-p1-rc2 | |
NTP ntp | =4.2.8-p10 | |
NTP ntp | =4.2.8-p11 | |
NTP ntp | =4.2.8-p12 | |
NTP ntp | =4.2.8-p2 | |
NTP ntp | =4.2.8-p2-rc1 | |
NTP ntp | =4.2.8-p2-rc2 | |
NTP ntp | =4.2.8-p2-rc3 | |
NTP ntp | =4.2.8-p3 | |
NTP ntp | =4.2.8-p3-rc1 | |
NTP ntp | =4.2.8-p3-rc2 | |
NTP ntp | =4.2.8-p3-rc3 | |
NTP ntp | =4.2.8-p4 | |
NTP ntp | =4.2.8-p5 | |
NTP ntp | =4.2.8-p6 | |
NTP ntp | =4.2.8-p7 | |
NTP ntp | =4.2.8-p8 | |
NTP ntp | =4.2.8-p9 | |
debian/ntp | 1:4.2.8p15+dfsg-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-8936 is a vulnerability in NTP through 4.2.8p12 that allows for a NULL pointer dereference.
CVE-2019-8936 has a severity rating of 7.5, which is classified as high.
CVE-2019-8936 affects NTP versions up to and including 4.2.8p12.
To fix CVE-2019-8936, update to NTP version 4.2.8p15 or later.
You can find more information about CVE-2019-8936 at the following references: [1](http://bugs.ntp.org/show_bug.cgi?id=3565) [2](http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00032.html) [3](http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00036.html)