NTP: Network Time Protocol Daemon crypto-NAK Denial of Service
This signature detects attempts to exploit a known vulnerability in the Network Time Protocol daemon (NTPD). Successful exploitation may result in denial-of-service conditions.
Extended Description
ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash) via a crypto-NAK packet. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-1547.
Affected Products
Oracle solaris
References
CVE: CVE-2016-4957
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Oracle
Opensuse
Suse
Novell
Ntp
5.0