CVE-2015-7979 (NVD)

2017-01-30

NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (client-server association tear down) by sending broadcast packets with invalid authentication to a broadcast client.

Products Ntp
Type Data Processing Errors (CWE-19)
First patch - None (likely due to unavailable code)
Links https://bto.bluecoat.com/security-advisory/sa113
http://lists.opensuse.org/opensuse-updates/2016-05/msg00114.html
https://security.FreeBSD.org/advisories/FreeBSD-SA-16:09.ntp.asc
http://rhn.redhat.com/errata/RHSA-2016-2583.html
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00026.html