CVE-2016-1550: Ntp

Medium severity, CVSS 5.3. EPSS: 3.6% chance of exploitation in the next 30 days.

An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.

Affected products

  • Ntp Ntp: version 4.2.8 only

Published 2017-01-06. Last modified 2026-06-17.