Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-2516

Опубликовано: 26 апр. 2016
Источник: redhat
CVSS2: 4.3
EPSS Средний

Описание

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.

Меры по смягчению последствий

Disable remote configuration of NTP, or restrict this ability to trusted users.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5ntpNot affected
Red Hat Enterprise Linux 6ntpWill not fix
Red Hat Enterprise Linux 7ntpWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1331466ntp: assertion failure in ntpd on duplicate IPs on unconfig directives

EPSS

Процентиль: 94%
0.1465
Средний

4.3 Medium

CVSS2

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 9 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.

CVSS3: 5.3
nvd
около 9 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.

CVSS3: 5.3
debian
около 9 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, all ...

CVSS3: 5.3
github
больше 3 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.

suse-cvrf
больше 9 лет назад

Security update for ntp

EPSS

Процентиль: 94%
0.1465
Средний

4.3 Medium

CVSS2