<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 21:30:53 +0000</lastBuildDate>
    <item>
      <title>certfr-2016-avi-153 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;les produits Cisco&lt;/span&gt;. Elles permettent à u…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2016-avi-153</link>
      <description>certfr-2016-avi-153</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2016-avi-153</guid>
    </item>
    <item>
      <title>cnvd-2016-02665</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2016-02665</link>
      <description>cnvd-2016-02665</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2016-02665</guid>
    </item>
    <item>
      <title>EUVD-2026-82285</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-82285</link>
      <description>EUVD-2026-82285</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-82285</guid>
    </item>
    <item>
      <title>fkie_cve-2016-1550</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2016-1550</link>
      <description>&lt;p&gt;An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2016-1550</guid>
    </item>
    <item>
      <title>GHSA-vg2m-563f-34vv</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-vg2m-563f-34vv</link>
      <description>&lt;p&gt;An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-vg2m-563f-34vv</guid>
    </item>
    <item>
      <title>gsd-2016-1550</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2016-1550</link>
      <description>gsd-2016-1550</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2016-1550</guid>
    </item>
    <item>
      <title>ICSA-21-103-11 — Siemens TIM 4R-IE Devices</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-21-103-11</link>
      <description>&lt;p&gt;The ULOGTOD function in ntp.d in SNTP before 4.2.7p366 does not properly perform type conversions from a precision value to a double, which allows remote attackers to cause a denial of service (infinite loop) via a crafted NTP packet. The rate limiting feature in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to have unspecified impact via a large number of crafted requests. The decodenetnum function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (assertion failure) via a 6 or mode 7 packet containing a long data value. Crypto-NAK packets in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to bypass authentication. NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network. NTP 4.x before 4.2.8p6 and 4.3.x before 4.3.90 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a &amp;#34;skeleton key.&amp;#34; ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command. NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (client-server association tear down) by sending broadcast packets with invalid authe…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The ULOGTOD function in ntp.d in SNTP before 4.2.7p366 does not properly perform type conversions from a precision value to a double, which allows remote attackers to cause a denial of service (infinite loop) via a crafted NTP packet. The rate limiting feature in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to have unspecified impact via a large number of crafted requests. The decodenetnum function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (assertion failure) via a 6 or mode 7 packet containing a long data value. Crypto-NAK packets in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to bypass authentication. NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network. NTP 4.x before 4.2.8p6 and 4.3.x before 4.3.90 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a &amp;#34;skeleton key.&amp;#34; ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command. NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (client-server association tear down) by sending broadcast packets with invalid authe…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-21-103-11</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10181-1 — ntp-4.2.8p9-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10181-1</link>
      <description>&lt;p&gt;ntp-4.2.8p9-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ntp-4.2.8p9-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10181-1</guid>
    </item>
    <item>
      <title>RHSA-2016:1552 — Red Hat Security Advisory: ntp security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2016:1552</link>
      <description>&lt;p&gt;ntp: off-path denial of service on authenticated broadcast mode ntp: crypto-NAK preemptable association denial of service ntp: ntpd switching to interleaved mode with spoofed packets ntp: libntp message digest disclosure ntp: out-of-bounds references on crafted packet&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ntp: off-path denial of service on authenticated broadcast mode ntp: crypto-NAK preemptable association denial of service ntp: ntpd switching to interleaved mode with spoofed packets ntp: libntp message digest disclosure ntp: out-of-bounds references on crafted packet&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2016:1552</guid>
    </item>
    <item>
      <title>SUSE-SU-2016:1278-1 — Security update for ntp</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2016:1278-1</link>
      <description>&lt;p&gt;Security update for ntp&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for ntp&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2016:1278-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2016-1550</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-1550</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: ntp, Ubuntu:16.04:LTS: ntp&lt;/p&gt;
&lt;p&gt;An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: ntp, Ubuntu:16.04:LTS: ntp&lt;/p&gt;
&lt;p&gt;An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-1550</guid>
    </item>
    <item>
      <title>VDE-2022-032 — AUMA: Multiple Vulnerabilities in Automation Runtime NTP Service</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2022-032</link>
      <description>&lt;p&gt;The SIMA2 Master Station features an NTP service based on ntpd, a reference implementation of the Network Time Protocol (NTP). Affected SIMA2 Master Stations with software version &amp;lt; V2.6 include an outdated version of ntpd which is affected by a large number of vulnerabilities&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The SIMA2 Master Station features an NTP service based on ntpd, a reference implementation of the Network Time Protocol (NTP). Affected SIMA2 Master Stations with software version &amp;lt; V2.6 include an outdated version of ntpd which is affected by a large number of vulnerabilities&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2022-032</guid>
    </item>
  </channel>
</rss>
