CVE-2016-2518: Medium severity Siemens SIMATIC NET CP 443-1 OPC UA vulnerability
The following flaw was found in ntpd:
Using a crafted packet to create a peer association with hmode > 7 causes the MATCHASSOC() lookup to make an out-of-bounds reference.
Upstream bugs:
http://support.ntp.org/bin/view/Main/NtpBug3009
External References:
http://support.ntp.org/bin/view/Main/SecurityNotice#April2016NTP428p7Security
Other sources
The MATCHASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-2518?
CVE-2016-2518 is classified as a high severity vulnerability due to its potential to cause an out-of-bounds reference.
How do I fix CVE-2016-2518?
To fix CVE-2016-2518, update NTP to version 4.2.8p12 or later for Debian systems, or 4.2.8 for Red Hat systems.
What systems are affected by CVE-2016-2518?
CVE-2016-2518 affects various versions of NTP including those prior to 4.2.8 and covers distributions like Debian and Red Hat.
What types of attacks can exploit CVE-2016-2518?
CVE-2016-2518 can be exploited through crafted packets that result in denial of service or unauthorized operation of the NTP service.
When was CVE-2016-2518 discovered?
CVE-2016-2518 was publicly disclosed in April 2016.