VDB
CVE-2016-7434
CVE-2016-7434
PUBLISHED
The read_mru_list function in NTP before 4.2.8p9 allows remote attackers to cause a denial of service (crash) via a crafted mrulist query.
EPSS 62.38% · 98.4th percentile
Risk Scores
EPSS Score
62.38%
98.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:16.04:LTS | ntp | 0, 1:4.2.8p4+dfsg-3ubuntu1, 1:4.2.8p4+dfsg-3ubuntu2 |
Exploit Intelligence
- shekkbuilder/CVE-2016-7434 (github-poc-repo)
- shekkbuilder/CVE-2016-7434 (github-poc-repo)
- shekkbuilder/CVE-2016-7434 (github-poc-repo)
- shekkbuilder/CVE-2016-7434 (github-poc-repo)
- shekkbuilder/CVE-2016-7434 (github-poc-repo)
- shekkbuilder/CVE-2016-7434 (github-poc-repo)
- shekkbuilder/CVE-2016-7434 (github-poc-repo)
- NTPD remote DOS exploit and vulnerable container (github-poc-repo)
- NTPD remote DOS exploit and vulnerable container (github-poc-repo)
- NTPD remote DOS exploit and vulnerable container (github-poc-repo)
…and 35 more exploits
Timeline
- CVE Published
- Nov 23, 2016 PoC Published
- Jul 12, 2017 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 18, 2025 EPSS Score
- Mar 19, 2025 EPSS Score
- Mar 27, 2025 EPSS Score
- Mar 28, 2025 EPSS Score
- Mar 30, 2025 EPSS Score
- Apr 1, 2025 EPSS Score
- May 1, 2025 EPSS Score
References
- https://ubuntu.com/security/CVE-2016-7434 third-party-advisory
- https://ubuntu.com/security/notices/USN-3349-1 vendor-advisory
- https://www.cve.org/CVERecord?id=CVE-2016-7434 third-party-advisory