PT-2016-4858 · Ntpsec+4 · Ntpsec+4

Matt Street

·

Publicado

2016-04-28

·

Atualizado

2024-06-15

·

CVE-2016-1551

CVSS v3.1

3.7

Baixa

VetorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions NTP versions 4.2.8p3 and earlier NTPsec version a5fb34b9cc89b92a8fef2f459004865c93bb7f92 and earlier
Description The issue arises because ntpd relies on the underlying operating system to protect it from requests that impersonate reference clocks. Since reference clocks are treated like other peers and stored in the same structure, any packet with a source IP address of a reference clock that reaches the receive() function will be treated as a trusted peer. This poses a risk to systems that lack typical martian packet filtering, which would block these packets, allowing an attacker to potentially control the time on the system.
Recommendations For NTP version 4.2.8p3 and earlier, consider implementing martian packet filtering to block packets that impersonate reference clocks. For NTPsec version a5fb34b9cc89b92a8fef2f459004865c93bb7f92 and earlier, consider implementing martian packet filtering to block packets that impersonate reference clocks. As a temporary workaround, consider restricting access to the receive() function to minimize the risk of exploitation.

Correção

DoS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-1551
OPENSUSE-SU-2016_1329-1
OPENSUSE-SU-2024:10181-1
SUSE-SU-2016:1278-1
SUSE-SU-2016:1291-1
SUSE-SU-2016:1471-1
SUSE-SU-2016:1568-1

Produtos afetados

Cisco Nexus
Freebsd
Ntp
Ntpsec
Suse