CVE-2016-1550

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
06/01/2017
Last modified:
20/04/2025

Description

An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ntp:ntp:4.2.8:p4:*:*:*:*:*:*


References to Advisories, Solutions, and Tools