oval:org.mitre.oval:def:28677

Definition Id: oval:org.mitre.oval:def:28677
 
Oval ID: oval:org.mitre.oval:def:28677
Title: Potential security vulnerabilities have been identified with HP-UX running NTP. These could be exploited remotely to execute code, create a Denial of Service (DoS), or other vulnerabilities.
Description: The config_auth function in ntpd in NTP before 4.2.7p11, when an auth key is not configured, improperly generates a key, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a brute-force attack.
Family: unix Class: vulnerability
Reference(s): CVE-2014-9293
Version: 7
Platform(s): HP-UX 11
Product(s):
Definition Synopsis: