Lucene search

K
cvelistMitreCVELIST:CVE-2018-7170
HistoryMar 06, 2018 - 8:00 p.m.

CVE-2018-7170

2018-03-0620:00:00
mitre
www.cve.org

6.5 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

56.0%

ntpd in ntp 4.2.x before 4.2.8p7 and 4.3.x before 4.3.92 allows authenticated users that know the private symmetric key to create arbitrarily-many ephemeral associations in order to win the clock selection of ntpd and modify a victim’s clock via a Sybil attack. This issue exists because of an incomplete fix for CVE-2016-1549.