Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-4956

Опубликовано: 02 июн. 2016
Источник: redhat
CVSS2: 2.6
EPSS Низкий

Описание

ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (interleaved-mode transition and time change) via a spoofed broadcast packet. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-1548.

Меры по смягчению последствий

Do not use NTP's broadcast mode in the clients by not configuring the "broadcastclient" directive in the ntp.conf file.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5ntpWill not fix
Red Hat Enterprise Linux 6ntpWill not fix
Red Hat Enterprise Linux 7ntpWill not fix

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=1340860ntp: broadcast interleave (incomplete fix for CVE-2016-1548)

EPSS

Процентиль: 88%
0.03621
Низкий

2.6 Low

CVSS2

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 9 лет назад

ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (interleaved-mode transition and time change) via a spoofed broadcast packet. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-1548.

CVSS3: 5.3
nvd
больше 9 лет назад

ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (interleaved-mode transition and time change) via a spoofed broadcast packet. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-1548.

CVSS3: 5.3
debian
больше 9 лет назад

ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a deni ...

CVSS3: 5.3
github
больше 3 лет назад

ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (interleaved-mode transition and time change) via a spoofed broadcast packet. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-1548.

suse-cvrf
больше 9 лет назад

Security update for ntp

EPSS

Процентиль: 88%
0.03621
Низкий

2.6 Low

CVSS2