ntpd in NTP 4.2.8p3 and NTPsec a5fb34b9cc89b92a8fef2f459004865c93bb7f92 relies on the underlying operating system to protect it from requests that impersonate reference clocks. Because reference clocks are treated like other peers and stored in the same structure, any packet with a source ip address of a reference clock (127.127.1.1 for example) that reaches the receive() function will match that reference clock's peer record and will be treated as a trusted peer. Any system that lacks the typical martian packet filtering which would block these packets is in danger of having its time controlled by an attacker.
CVSS Details
- CVSS 3.0 Base Score: 3.7
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Aix 5.3.12 Ntp_advisory7 | — | — | Dec 19, 2016 | Dec 19, 2016 |
| Aix 6.1.6 Ntp_advisory7 | — | — | Nov 3, 2017 | Jan 27, 2017 |
| Aix 6.1.9 Ntp_advisory7 | — | — | Dec 19, 2016 | Dec 19, 2016 |
| Aix 7.1.0 Ntp_advisory7 | — | — | Nov 3, 2017 | Jan 27, 2017 |
| Aix 7.1.3 Ntp_advisory7 | — | — | Nov 3, 2017 | Jan 27, 2017 |
| Aix 7.1.4 Ntp_advisory7 | — | — | Dec 19, 2016 | Dec 19, 2016 |
| Aix 7.2.0 Ntp_advisory7 | — | — | Dec 19, 2016 | Dec 19, 2016 |
| Cisco Apic | — | Upgrade to the latest version of Cisco APIC to resolve this vulnerability. | May 11, 2026 | Apr 28, 2016 |
| F5 Big Ip | — | Update F5 BIG-IP to the latest version | Jun 17, 2026 | May 25, 2016 |
| Freebsd | — | Upgrade FreeBSDUpgrade ntpUpgrade ntp-devel | Dec 10, 2025 | Apr 27, 2016 |
| Gentoo Linux | — | Upgrade net-misc/ntp. | Oct 30, 2017 | Jan 27, 2017 |
| Ibm Aix | — | Apply the fix or workaround for ntp_advisory7 | Nov 30, 2017 | Jan 27, 2017 |
| Ntp | — | Upgrade to the latest version of NTP | Feb 23, 2023 | Jan 27, 2017 |
| Oracle Solaris | — | Upgrade service/network/ntp to version 4.2.8.8-0.175.3.12.0.1.0 on Solaris 11.3 | May 29, 2017 | Jan 27, 2017 |
| Suse | — | Upgrade ntpUpgrade ntp-doc | May 11, 2016 | May 11, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub