Stack-based buffer overflow in the reslist function in ntpq in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote servers have unspecified impact via a long flagstr variable in a restriction list response. https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-6460