Lucene search

K
ciscoCiscoCISCO-SA-20161123-NTPD
HistoryNov 23, 2016 - 4:00 p.m.

Multiple Vulnerabilities in Network Time Protocol Daemon Affecting Cisco Products: November 2016

2016-11-2316:00:00
tools.cisco.com
310

7.1 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.965 High

EPSS

Percentile

99.6%

Multiple Cisco products incorporate a version of the Network Time Protocol daemon (ntpd) package. Versions of this package are affected by one or more vulnerabilities that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or modify the time being advertised by a device acting as a Network Time Protocol (NTP) server.

On November 21, 2016, the NTP Consortium of the Network Time Foundation released a security notice that details ten issues regarding DoS vulnerabilities and logic issues that may allow an attacker to shift a system’s time.

The new vulnerabilities disclosed in this document are as follows:

Network Time Protocol Trap Service Denial of Service Vulnerability
Network Time Protocol Broadcast Mode Denial of Service Vulnerability
Network Time Protocol Broadcast Mode Denial of Service Vulnerability
Network Time Protocol Insufficient Resource Pool Denial of Service Vulnerability
Network Time Protocol Configuration Modification Denial of Service Vulnerability
Network Time Protocol mrulist Query Requests Denial of Service Vulnerability
Network Time Protocol Multiple Binds to the Same Port Vulnerability
Network Time Protocol Rate Limiting Denial of Service Vulnerability

As well as:

Regression of CVE-2015-8138
Network Time Protocol Reboot sync calculation problem
Additional details about each vulnerability are in the NTP Consortium Security Notice [“http://support.ntp.org/bin/view/Main/SecurityNotice#November_2016_ntp_4_2_8p9_NTP_Se”].

Workarounds that address one or more of these vulnerabilities may be available and are documented in the Cisco bug for each affected product.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161123-ntpd [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161123-ntpd”]

Affected configurations

Vulners
Node
ciscoapplication_and_content_networking_system_softwareMatchany
OR
ciscoemergency_responderMatchany
OR
ciscoios_xr_softwareMatchany
OR
ciscounity_expressMatchany
OR
ciscowide_area_application_servicesMatchany
OR
ciscounified_meetingplaceMatchany
OR
ciscoip_interoperability_and_collaboration_systemMatchany
OR
ciscounity_connectionMatchany
OR
ciscotelepresence_mx200Matchany
OR
ciscocisco_iosMatchanyxe
OR
ciscovideo_surveillance_media_serverMatchany
OR
ciscodigital_media_managerMatchany
OR
cisconetwork_analysis_module_softwareMatchany
OR
ciscoshow_and_shareMatchany
OR
ciscomobility_services_engineMatchany
OR
ciscoidentity_services_engine_softwareMatchany
OR
ciscotelepresence_video_communication_serverMatchany
OR
ciscoprime_data_center_network_managerMatchany
OR
ciscoprime_lan_management_solutionMatchany
OR
ciscounified_communications_domain_managerMatchany
OR
ciscocontent_security_management_applianceMatchany
OR
ciscoprime_infrastructureMatchany
OR
ciscoconnected_grid_network_management_systemMatchany
OR
ciscowebex_node_for_mcsMatchany
OR
ciscounified_computing_system_central_softwareMatchany
OR
ciscoenterprise_content_delivery_systemMatchany
OR
ciscofinesseMatchany
OR
ciscosocialminerMatchany
OR
ciscomediasenseMatchany
OR
ciscounified_sip_proxyMatchany
OR
ciscomedia_experience_engine_5600Matchany
OR
ciscoucs_directorMatchany
OR
ciscovideoscape_distribution_suite_service_brokerMatchany
OR
ciscodigital_content_managerMatchany
OR
ciscounified_intelligence_centerMatchany
OR
ciscoprime_service_catalogMatchany
OR
cisconexus_1000vMatchanynexus_1000v
OR
ciscoapplication_policy_infrastructure_controller_\(apic\)Matchany
OR
ciscoexpresswayMatchany
OR
ciscojabber_guestMatchany
OR
ciscodesktop_collaboration_experienceMatchany
OR
ciscoprime_license_managerMatchany
OR
ciscotelepresence_isdn_gw_3241Matchany
OR
ciscotelepresence_conductorMatchany
OR
ciscofirepower_system_softwareMatchany
OR
ciscoprime_collaboration_provisioningMatchany
OR
ciscoprime_networkMatchany
OR
ciscopaging_serverMatchany
OR
cisconexus_3000Matchany
OR
ciscoevolved_programmable_network_managerMatchany
OR
ciscocisco_policy_suiteMatchany
OR
ciscohosted_collaboration_mediation_fulfillmentMatchany
OR
ciscocloud_services_platform_2100Matchany
OR
ciscoregistered_envelope_serviceMatchany
OR
ciscoapplication_and_content_networking_system_softwareMatchany
OR
ciscoemergency_responderMatchany
OR
ciscoios_xr_softwareMatchany
OR
ciscounity_expressMatchany
OR
ciscowide_area_application_servicesMatchany
OR
ciscounified_meetingplaceMatchany
OR
ciscoip_interoperability_and_collaboration_systemMatchany
OR
ciscounity_connectionMatchany
OR
ciscotelepresence_mx200Matchany
OR
ciscocisco_iosMatchanyxe
OR
ciscovideo_surveillance_media_serverMatchany
OR
ciscodigital_media_managerMatchany
OR
cisconetwork_analysis_module_softwareMatchany
OR
ciscoshow_and_shareMatchany
OR
ciscomobility_services_engineMatchany
OR
ciscoidentity_services_engine_softwareMatchany
OR
ciscotelepresence_video_communication_serverMatchany
OR
ciscoprime_data_center_network_managerMatchany
OR
ciscoprime_lan_management_solutionMatchany
OR
ciscounified_communications_domain_managerMatchany
OR
ciscocontent_security_management_applianceMatchany
OR
ciscoprime_infrastructureMatchany
OR
ciscoconnected_grid_network_management_systemMatchany
OR
ciscowebex_node_for_mcsMatchany
OR
ciscounified_computing_system_central_softwareMatchany
OR
ciscoenterprise_content_delivery_systemMatchany
OR
ciscofinesseMatchany
OR
ciscosocialminerMatchany
OR
ciscomediasenseMatchany
OR
ciscounified_sip_proxyMatchany
OR
ciscocisco_mxeMatch3500_\(media_experience_engine\)
OR
ciscoucs_directorMatchany
OR
ciscovideoscape_distribution_suite_service_brokerMatchany
OR
ciscodigital_content_managerMatchany
OR
ciscounified_intelligence_centerMatchany
OR
ciscoprime_service_catalogMatchany
OR
cisconexus_1000vMatch1000v_switchnexus_1000v
OR
ciscoapplication_policy_infrastructure_controller_\(apic\)Matchany
OR
ciscoexpresswayMatchany
OR
ciscojabber_guestMatchany
OR
ciscodesktop_collaboration_experienceMatchany
OR
ciscoprime_license_managerMatchany
OR
ciscotelepresence_isdn_gw_3241Matchany
OR
ciscotelepresence_conductorMatchany
OR
ciscofirepower_system_softwareMatchany
OR
ciscoprime_collaboration_provisioningMatchany
OR
ciscoprime_networkMatchany
OR
ciscopaging_serverMatchany
OR
cisconexus_1000vMatch3000_series_switchnexus_1000v
OR
ciscoevolved_programmable_network_managerMatchany
OR
ciscocisco_policy_suiteMatchany
OR
ciscohosted_collaboration_mediation_fulfillmentMatchany
OR
ciscocloud_services_platform_2100Match2100
OR
ciscoregistered_envelope_serviceMatchany

7.1 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.965 High

EPSS

Percentile

99.6%