Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-2517

Опубликовано: 30 янв. 2017
Источник: ubuntu
Приоритет: negligible
CVSS2: 4.9
CVSS3: 5.3

Описание

NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (prevent subsequent authentication) by leveraging knowledge of the controlkey or requestkey and sending a crafted packet to ntpd, which changes the value of trustedkey, controlkey, or requestkey. NOTE: this vulnerability exists because of a CVE-2016-2516 regression.

РелизСтатусПримечание
devel

ignored

esm-infra-legacy/trusty

ignored

esm-infra/xenial

ignored

precise

ignored

trusty

ignored

trusty/esm

ignored

upstream

released

1:4.2.8p7+dfsg-1
vivid/stable-phone-overlay

ignored

vivid/ubuntu-core

DNE

wily

ignored

Показывать по

4.9 Medium

CVSS2

5.3 Medium

CVSS3

Связанные уязвимости

redhat
почти 10 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (prevent subsequent authentication) by leveraging knowledge of the controlkey or requestkey and sending a crafted packet to ntpd, which changes the value of trustedkey, controlkey, or requestkey. NOTE: this vulnerability exists because of a CVE-2016-2516 regression.

CVSS3: 5.3
nvd
около 9 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (prevent subsequent authentication) by leveraging knowledge of the controlkey or requestkey and sending a crafted packet to ntpd, which changes the value of trustedkey, controlkey, or requestkey. NOTE: this vulnerability exists because of a CVE-2016-2516 regression.

CVSS3: 5.3
debian
около 9 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to ...

CVSS3: 5.3
github
больше 3 лет назад

NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (prevent subsequent authentication) by leveraging knowledge of the controlkey or requestkey and sending a crafted packet to ntpd, which changes the value of trustedkey, controlkey, or requestkey. NOTE: this vulnerability exists because of a CVE-2016-2516 regression.

suse-cvrf
больше 9 лет назад

Security update for ntp

4.9 Medium

CVSS2

5.3 Medium

CVSS3