Lucene search

K
cvelistCertccCVELIST:CVE-2016-1550
HistoryJan 06, 2017 - 9:00 p.m.

CVE-2016-1550

2017-01-0621:00:00
certcc
www.cve.org
1

6.4 Medium

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

76.3%

An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.

CNA Affected

[
  {
    "product": "NTP",
    "vendor": "NTP Project",
    "versions": [
      {
        "status": "affected",
        "version": "4.2.8p3"
      },
      {
        "status": "affected",
        "version": "4.2.8p4"
      }
    ]
  },
  {
    "product": "NTPSec",
    "vendor": "NTPsec Project",
    "versions": [
      {
        "status": "affected",
        "version": "a5fb34b9cc89b92a8fef2f459004865c93bb7f92"
      }
    ]
  }
]

References