CVE-2016-6301

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
09/12/2016
Last modified:
04/12/2025

Description

The recv_and_process_client_pkt function in networking/ntpd.c in busybox allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged NTP packet, which triggers a communication loop.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:busybox:busybox:*:*:*:*:*:*:*:* 1.25.1 (excluding)


References to Advisories, Solutions, and Tools