Related Vulnerabilities: CVE-2016-1549  

A malicious authenticated peer can create arbitrarily-many ephemeral associations in order to win the clock selection algorithm in ntpd in NTP 4.2.8p4 and earlier and NTPsec 3e160db8dc248a0bcb053b56a80167dc742d2b74 and a5fb34b9cc89b92a8fef2f459004865c93bb7f92 and modify a victim's clock.

Severity Medium

Remote Yes

Type Content spoofing

Description

A malicious authenticated peer can create arbitrarily-many ephemeral associations in order to win the clock selection algorithm in ntpd in NTP 4.2.8p4 and earlier and NTPsec 3e160db8dc248a0bcb053b56a80167dc742d2b74 and a5fb34b9cc89b92a8fef2f459004865c93bb7f92 and modify a victim's clock.

AVG-647 ntp 4.2.8.p10-1 4.2.8.p11-1 High Fixed

16 Mar 2018 ASA-201803-11 AVG-647 ntp High multiple issues

http://support.ntp.org/bin/view/Main/NtpBug3012