CVE-2014-125036
A vulnerability, which was classified as problematic, has been found in drybjed ansible-ntp. Affected by this issue is some unknown functionality of the file meta/main.yml. The manipulation leads to insufficient control of network message volume. The attack can only be done within the local network. The complexity of an attack is rather high. The exploitation is known to be difficult. The patch is identified as ed4ca2cf012677973c220cdba36b5c60bfa0260b. It is recommended to apply a patch to fix this issue. VDB-217190 is the identifier assigned to this vulnerability.
Scoring
- Severity
- LOW
- CVSS base score
- 2.6
- CVSS vector
- CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L
- EPSS probability
- 0.09%
- CWE
- CWE-406
- Published
- 2023-01-02
- Last modified
- 2026-03-15
Affected products
- drybjed ansible-ntp
Weakness type
Related vulnerabilities
- CVE-2026-86202 — PocketMine-MP before 5.39.2 Network Amplification via ActorEventPacket
- CVE-2026-68080 — Apache Qpid Broker-J: Unbounded echo flow responses can lead to denial of service
- CVE-2026-54609 — QTINeon has unauthenticated relay-to-host amplification via unbounded RECONNECT_REQUEST forwarding
- CVE-2026-50045 — 'max-global-quota' reset by DNSSEC validation restarts
- CVE-2026-45557 — Technitium DNS Server excessive DNSSEC requests
- CVE-2025-58066 — DoS Vulnerability in ntpd-rs
- CVE-2021-38135 — Possible External service interaction Vulnerability in OpenText iManager
- CVE-2024-25015 — IBM MQ denial of service