Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

CVE Kennung:CVE-2015-1798
Beschreibung:The symmetric-key feature in the receive function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p2 requires a correct MAC only if the MAC field has a nonzero length, which makes it easier for man-in-the- middle attackers to spoof packets by omitting the MAC.
Test Kennungen: 1.3.6.1.4.1.25623.1.0.703223   1.3.6.1.4.1.25623.1.0.871405   1.3.6.1.4.1.25623.1.0.871492   1.3.6.1.4.1.25623.1.1.4.2016.2094.1  
Querverweise: Common Vulnerability Exposure (CVE) ID: CVE-2015-1798
http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html
BugTraq ID: 73951
http://www.securityfocus.com/bid/73951
CERT/CC vulnerability note: VU#374268
http://www.kb.cert.org/vuls/id/374268
Cisco Security Advisory: 20150408 Multiple Vulnerabilities in ntpd (April 2015) Affecting Cisco Products
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150408-ntpd
Cisco Security Advisory: 20150408 Network Time Protocol Daemon MAC Checking Failure Authentication Bypass Vulnerability
http://tools.cisco.com/security/center/viewAlert.x?alertId=38276
Debian Security Information: DSA-3223 (Google Search)
http://www.debian.org/security/2015/dsa-3223
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/155864.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-April/155863.html
https://security.gentoo.org/glsa/201509-01
HPdes Security Advisory: HPSBUX03333
http://marc.info/?l=bugtraq&m=143213867103400&w=2
HPdes Security Advisory: SSRT102029
http://marc.info/?l=bugtraq&m=143213867103400&w=2
http://www.mandriva.com/security/advisories?name=MDVSA-2015:202
RedHat Security Advisories: RHSA-2015:1459
http://rhn.redhat.com/errata/RHSA-2015-1459.html
http://www.securitytracker.com/id/1032032
SuSE Security Announcement: openSUSE-SU-2015:0775 (Google Search)
http://lists.opensuse.org/opensuse-updates/2015-04/msg00052.html
http://www.ubuntu.com/usn/USN-2567-1




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.