Short Name |
NTP:MODE7-DOS |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
NTP |
Keywords |
Multiple Vendors NTP Mode 7 Denial of Service |
Release Date |
2011/07/11 |
Update Number |
1952 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
A denial of service vulnerability exists in NTP. The vulnerability is due to incorrect handling of mode 7 (MODE_PRIVATE) requests. A remote unauthenticated attacker can exploit this vulnerability by sending a maliciously crafted mode 7 request to a target NTP server. A successful attack can lead to a resource exhaustion and, ultimately, a denial of service condition of the affected service on a target system. NTP is a product shipped by multiple vendors.
NTP is prone to a remote denial-of-service vulnerability because it fails to properly handle certain incoming network packets. An attacker can exploit this issue to cause the application to consume excessive CPU resources and fill disk space with log messages.