Vendor
NTP Project vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 13 vulnerabilities in NTP Project: 0 in the last 7 days and 0 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2016-2519, was published on 30 January 2017. 1 technology has a page of its own.
- Last 7 days
- 0
- Last 90 days
- 0
- Critical, all time
- 0
- Exploited in the wild
- 0
About NTP Project
The maintainers of the Network Time Protocol (NTP) reference implementation.
NTP Project technologies
Latest NTP Project vulnerabilities
- CVE-2016-2519: NTP ntpd denial of service in ctl_getitemmediumCVSS 5.9
- CVE-2015-8138: NTP Project ntpd origin timestamp validation bypassmediumCVSS 5.3
- CVE-2015-7979: NTP Project NTP denial of service in broadcast client associationhighCVSS 7.5
- CVE-2015-7978: NTP Project NTP denial of service via stack exhaustion in ntpdchighCVSS 7.5
- CVE-2015-7977: NTP Project ntpd denial of service via reslist commandmediumCVSS 5.9
- CVE-2015-7976: NTP ntpq improper input validation in saveconfig commandmediumCVSS 4.3
- CVE-2015-7975: NTP nextvar function memory corruption denial of servicemediumCVSS 6.2
- CVE-2015-7973: NTP replay attack in broadcast modemediumCVSS 6.5
- CVE-2016-9312: NTP Project ntpd denial of service via large UDP packet on WindowshighCVSS 7.5
- CVE-2016-9311: NTP Project ntpd denial of service in trap servicemediumCVSS 5.9
- CVE-2016-9310: NTP ntpd information disclosure and DDoS vector in mode 6 control functionalitymediumCVSS 6.5
- CVE-2016-7434: NTP Project NTP denial of service in read_mru_listhighCVSS 7.5
- CVE-2016-7431: NTP Project ntpd origin timestamp protection bypassmediumCVSS 5.3
Most severe NTP Project vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2015-7979: NTP Project NTP denial of service in broadcast client associationhighCVSS 7.5
- CVE-2015-7978: NTP Project NTP denial of service via stack exhaustion in ntpdchighCVSS 7.5
- CVE-2016-9312: NTP Project ntpd denial of service via large UDP packet on WindowshighCVSS 7.5
- CVE-2016-7434: NTP Project NTP denial of service in read_mru_listhighCVSS 7.5
- CVE-2015-7973: NTP replay attack in broadcast modemediumCVSS 6.5
- CVE-2016-9310: NTP ntpd information disclosure and DDoS vector in mode 6 control functionalitymediumCVSS 6.5
- CVE-2015-7975: NTP nextvar function memory corruption denial of servicemediumCVSS 6.2
- CVE-2016-2519: NTP ntpd denial of service in ctl_getitemmediumCVSS 5.9
- CVE-2015-7977: NTP Project ntpd denial of service via reslist commandmediumCVSS 5.9
- CVE-2016-9311: NTP Project ntpd denial of service in trap servicemediumCVSS 5.9
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/vendors/ntp-project.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "NTP Project vulnerabilities", https://junglewise.ai/threats/vendors/ntp-project, 26 September 2026.