CVE-2026-18321

Summary

Buffer overflow in NTPsec's Zyfer refclock allows local attacker to crash ntpd

Affected Software

VendorProductVersion RangeStatus
NTPsecntpsec0 < 1.2.5affected

Weaknesses

  • CWE-120: CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References