Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-2516

Опубликовано: 26 апр. 2016
Источник: redhat
CVSS2: 4.3

Описание

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.

Меры по смягчению последствий

Disable remote configuration of NTP, or restrict this ability to trusted users.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5ntpNot affected
Red Hat Enterprise Linux 6ntpWill not fix
Red Hat Enterprise Linux 7ntpWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1331466ntp: assertion failure in ntpd on duplicate IPs on unconfig directives

4.3 Medium

CVSS2

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 9 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.

CVSS3: 5.3
nvd
больше 9 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.

CVSS3: 5.3
debian
больше 9 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, all ...

CVSS3: 5.3
github
больше 4 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.

suse-cvrf
больше 10 лет назад

Security update for ntp

4.3 Medium

CVSS2