CVE-2016-4957: Novell Suse Manager
High severity, CVSS 7.5. EPSS: 44.9% chance of exploitation in the next 30 days.
ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash) via a crypto-NAK packet. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-1547.
Affected products
- Novell Suse Manager: version 2.1 only
- Ntp Ntp: version 4.2.8 only; version 4.3.92 only
- Opensuse Leap: version 42.1 only
- Opensuse Opensuse: version 13.2 only
- Oracle Solaris: version 10 only; version 11.3 only
- Suse Linux Enterprise Desktop: version 12 only
- Suse Linux Enterprise Server: version 11 only; version 12 only
- Suse Manager Proxy: version 2.1 only
- Suse Openstack Cloud: version 5 only
Published 2016-07-05. Last modified 2026-06-17.