NTP Bug 2942

Off-path Denial of Service (DoS) attack on authenticated broadcast mode

  • Date Resolved: Stable (4.2.8p6) 19 Jan 2016; Dev (4.3.90) 19 Jan 2016
  • References: Sec 2942 / CVE-2015-7979
  • Affects: All ntp-4 releases up to, but not including 4.2.8p6, and 4.3.0 up to, but not including 4.3.90
  • CVSS: (AV:N/AC:M/Au:N/C:N/I:P/A:P) Base Score: 5.8
  • Summary: An off-path attacker can send broadcast packets with bad authentication (wrong key, mismatched key, incorrect MAC, etc) to broadcast clients. It is observed that the broadcast client tears down the association with the broadcast server upon receiving just one bad packet.
  • Mitigation:
  • Credit: This weakness was discovered by Aanchal Malhotra <> of Boston University.

This topic: Main > SecurityNotice > NtpBug2942
Topic revision: r1 - 2016-01-20 - 11:33:16 - HarlanStenn
SSL security by CAcert
Get the CAcert Root Certificate
This site is powered by the TWiki collaboration platform
IPv6 Ready
Copyright & 1999-2020 by the contributing authors. All material on this collaboration platform is the property of the contributing authors. Ideas, requests, problems regarding the site? Send feedback