CVE-2014-9294
ntp: ntp-keygen uses weak random number generator and seed when generating MD5 keys
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
util/ntp-keygen.c in ntp-keygen in NTP before 4.2.7p230 uses a weak RNG seed, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a brute-force attack.
util/ntp-keygen.c en ntp-keygen en NTP anterior a 4.2.7p230 emplea una semilla RNG débil, esto hace que sea más fácil romper los mecanismos de cifrado atacantes remotos mediante un ataque de fuerza bruta.
It was found that ntp-keygen used a weak method for generating MD5 keys. This could possibly allow an attacker to guess generated MD5 keys that could then be used to spoof an NTP client or server. Note: it is recommended to regenerate any MD5 keys that had explicitly been generated with ntp-keygen; the default installation does not contain such keys.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2014-12-05 CVE Reserved
- 2014-12-20 CVE Published
- 2024-08-01 EPSS Updated
- 2024-08-06 CVE Updated
- 2024-08-06 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-338: Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CAPEC
References (23)
URL | Tag | Source |
---|---|---|
http://advisories.mageia.org/MGASA-2014-0541.html | X_refsource_confirm | |
http://bugs.ntp.org/show_bug.cgi?id=2666 | X_refsource_confirm | |
http://secunia.com/advisories/62209 | Third Party Advisory | |
http://www.kb.cert.org/vuls/id/852879 | Third Party Advisory | |
http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html | X_refsource_confirm | |
http://www.securityfocus.com/bid/71762 | Vdb Entry | |
https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04790232 | X_refsource_confirm | |
https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04916783 | X_refsource_confirm | |
https://kc.mcafee.com/corporate/index?page=content&id=SB10103 | X_refsource_confirm | |
https://www.arista.com/en/support/advisories-notices/security-advisories/1047-security-advisory-8 | X_refsource_misc |
URL | Date | SRC |
---|---|---|
http://bk1.ntp.org/ntp-dev/util/ntp-keygen.c?PAGE=diffs&REV=4eae1b72298KRoBQmX-y8URCiRPH5g | 2024-08-06 |
URL | Date | SRC |
---|