#VU76002 Out-of-bounds write in ntp - CVE-2023-26555
Published: May 10, 2023
ntp
ntp.org
Description
The vulnerability allows an attacker to compromise vulnerable system.
The vulnerability exists due to a boundary error within praecis_parse() function in ntpd/refclock_palisade.c. An attacker with physical proximity to device can trigger an out-of-bounds write error by manipulating the GPS receiver and execute arbitrary code on the target system.