Rapid7

vulnerability

RHSA-2016:0780: ntp security and bug fix update

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
May 10, 2016
Added
May 11, 2016
Modified
Jul 28, 2025

Description

NTP before 4.2.8p6 and 4.3.0 before 4.3.90 allows a remote attackers to cause a denial of service (stack exhaustion) via an ntpdc relist command, which triggers recursive traversal of the restriction list.

Solutions

redhat-upgrade-ntpredhat-upgrade-ntp-debuginforedhat-upgrade-ntp-docredhat-upgrade-ntp-perlredhat-upgrade-ntpdate

References

    Title
    Rapid7 Labs

    2026 Global Threat Landscape Report

    The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.