Описание
An off-path attacker can cause a preemptible client association to be demobilized in NTP 4.2.8p4 and earlier and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92 by sending a crypto NAK packet to a victim client with a spoofed source address of an existing associated peer. This is true even if authentication is enabled.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 1:4.2.8p4+dfsg-3ubuntu6 |
esm-infra-legacy/trusty | not-affected | 1:4.2.6.p5+dfsg-3ubuntu2.14.04.10 |
esm-infra/xenial | not-affected | 1:4.2.8p4+dfsg-3ubuntu5.3 |
precise | released | 1:4.2.6.p3+dfsg-1ubuntu3.11 |
precise/esm | not-affected | 1:4.2.6.p3+dfsg-1ubuntu3.11 |
trusty | released | 1:4.2.6.p5+dfsg-3ubuntu2.14.04.10 |
trusty/esm | not-affected | 1:4.2.6.p5+dfsg-3ubuntu2.14.04.10 |
upstream | released | 1:4.2.8p7+dfsg-1 |
vivid/stable-phone-overlay | ignored | end of life |
vivid/ubuntu-core | DNE |
Показывать по
EPSS
5 Medium
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
An off-path attacker can cause a preemptible client association to be demobilized in NTP 4.2.8p4 and earlier and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92 by sending a crypto NAK packet to a victim client with a spoofed source address of an existing associated peer. This is true even if authentication is enabled.
An off-path attacker can cause a preemptible client association to be demobilized in NTP 4.2.8p4 and earlier and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92 by sending a crypto NAK packet to a victim client with a spoofed source address of an existing associated peer. This is true even if authentication is enabled.
An off-path attacker can cause a preemptible client association to be ...
An off-path attacker can cause a preemptible client association to be demobilized in NTP 4.2.8p4 and earlier and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92 by sending a crypto NAK packet to a victim client with a spoofed source address of an existing associated peer. This is true even if authentication is enabled.
EPSS
5 Medium
CVSS2
5.3 Medium
CVSS3