<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T21:30:56.737644+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2016-avi-153</id>
    <title>certfr-2016-avi-153 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;les produits Cisco&lt;/span&gt;. Elles permettent à u…</title>
    <updated>2026-10-02T21:30:56.755142+00:00</updated>
    <content>certfr-2016-avi-153</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2016-avi-153"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2016-02665</id>
    <title>cnvd-2016-02665</title>
    <updated>2026-10-02T21:30:56.755185+00:00</updated>
    <content>cnvd-2016-02665</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2016-02665"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-82285</id>
    <title>EUVD-2026-82285</title>
    <updated>2026-10-02T21:30:56.755200+00:00</updated>
    <content>EUVD-2026-82285</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-82285"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2016-1550</id>
    <title>fkie_cve-2016-1550</title>
    <updated>2026-10-02T21:30:56.755211+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2016-1550"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-vg2m-563f-34vv</id>
    <title>GHSA-vg2m-563f-34vv</title>
    <updated>2026-10-02T21:30:56.755253+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-vg2m-563f-34vv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2016-1550</id>
    <title>gsd-2016-1550</title>
    <updated>2026-10-02T21:30:56.755268+00:00</updated>
    <content>gsd-2016-1550</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2016-1550"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-21-103-11</id>
    <title>ICSA-21-103-11 — Siemens TIM 4R-IE Devices</title>
    <updated>2026-10-02T21:30:56.755279+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The ULOGTOD function in ntp.d in SNTP before 4.2.7p366 does not properly perform type conversions from a precision value to a double, which allows remote attackers to cause a denial of service (infinite loop) via a crafted NTP packet. The rate limiting feature in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to have unspecified impact via a large number of crafted requests. The decodenetnum function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (assertion failure) via a 6 or mode 7 packet containing a long data value. Crypto-NAK packets in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to bypass authentication. NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network. NTP 4.x before 4.2.8p6 and 4.3.x before 4.3.90 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a "skeleton key." ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command. NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (client-server association tear down) by sending broadcast packets with invalid authe…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-21-103-11"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10181-1</id>
    <title>openSUSE-SU-2024:10181-1 — ntp-4.2.8p9-1.1 on GA media</title>
    <updated>2026-10-02T21:30:56.755325+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ntp-4.2.8p9-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10181-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2016:1552</id>
    <title>RHSA-2016:1552 — Red Hat Security Advisory: ntp security update</title>
    <updated>2026-10-02T21:30:56.755364+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ntp: off-path denial of service on authenticated broadcast mode ntp: crypto-NAK preemptable association denial of service ntp: ntpd switching to interleaved mode with spoofed packets ntp: libntp message digest disclosure ntp: out-of-bounds references on crafted packet</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2016:1552"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2016:1278-1</id>
    <title>SUSE-SU-2016:1278-1 — Security update for ntp</title>
    <updated>2026-10-02T21:30:56.755382+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for ntp</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2016:1278-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-1550</id>
    <title>UBUNTU-CVE-2016-1550</title>
    <updated>2026-10-02T21:30:56.755398+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: ntp, Ubuntu:16.04:LTS: ntp</p>
<p>An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-1550"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2022-032</id>
    <title>VDE-2022-032 — AUMA: Multiple Vulnerabilities in Automation Runtime NTP Service</title>
    <updated>2026-10-02T21:30:56.755418+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The SIMA2 Master Station features an NTP service based on ntpd, a reference implementation of the Network Time Protocol (NTP). Affected SIMA2 Master Stations with software version &lt; V2.6 include an outdated version of ntpd which is affected by a large number of vulnerabilities</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2022-032"/>
  </entry>
</feed>
