ntp ntp CVE-2016-4954 vulnerability in Ntp and Other Products
Published on July 5, 2016

product logo product logo product logo product logo
The process_packet function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (peer-variable modification) by sending spoofed packets from many source IP addresses in a certain scenario, as demonstrated by triggering an incorrect leap indication.

Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory NVD


Products Associated with CVE-2016-4954

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2016-4954 are published in these products:

Ntp
 
 
 
 
 
 
 
 
 

Exploit Probability

EPSS
2.86%
Percentile
86.04%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.