PT-2016-6190 · Ntf+3 · Ntp+3
Nicolas Edet
·
Published
2016-06-13
·
Updated
2024-06-15
·
CVE-2016-4957
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
NTP versions prior to 4.2.8p8
Description
The issue allows remote attackers to cause a denial of service, resulting in the daemon crashing via a crypto-NAK packet. This problem exists due to an incorrect fix for a previous issue.
Recommendations
For versions prior to 4.2.8p8, update to version 4.2.8p8 or later to resolve the issue.
Fix
DoS
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Freebsd
Ntp
Suse