Check Point Advisories

NTP Denial of Service (CVE-2016-7434)

Check Point Reference: CPAI-2016-1040
Date Published: 23 Nov 2016
Severity: High
Last Updated: Sunday 09 March, 2025
Source:
Industry Reference:CVE-2016-7434
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? NTP 4.3.0 and later, prior to 4.3.94
NTP 4.2.7 Patch 100
NTP 4.2.7 Patch 101
NTP 4.2.7 Patch 102
NTP 4.2.7 Patch 103
NTP 4.2.7 Patch 104
NTP 4.2.7 Patch 105
NTP 4.2.7 Patch 106
NTP 4.2.7 Patch 107
NTP 4.2.7 Patch 108
NTP 4.2.7 Patch 109
NTP 4.2.7 Patch 110
NTP 4.2.7 Patch 111
NTP 4.2.7 Patch 112
NTP 4.2.7 Patch 113
NTP 4.2.7 Patch 114
NTP 4.2.7 Patch 115
NTP 4.2.7 Patch 116
NTP 4.2.7 Patch 117
NTP 4.2.7 Patch 118
NTP 4.2.7 Patch 119
NTP 4.2.7 Patch 120
NTP 4.2.7 Patch 121
NTP 4.2.7 Patch 122
NTP 4.2.7 Patch 123
NTP 4.2.7 Patch 124
NTP 4.2.7 Patch 125
NTP 4.2.7 Patch 126
NTP 4.2.7 Patch 127
NTP 4.2.7 Patch 128
NTP 4.2.7 Patch 129
NTP 4.2.7 Patch 130
NTP 4.2.7 Patch 131
NTP 4.2.7 Patch 132
NTP 4.2.7 Patch 133
NTP 4.2.7 Patch 134
NTP 4.2.7 Patch 135
NTP 4.2.7 Patch 136
NTP 4.2.7 Patch 137
NTP 4.2.7 Patch 138
NTP 4.2.7 Patch 139
NTP 4.2.7 Patch 140
NTP 4.2.7 Patch 141
NTP 4.2.7 Patch 142
NTP 4.2.7 Patch 143
NTP 4.2.7 Patch 144
NTP 4.2.7 Patch 145
NTP 4.2.7 Patch 146
NTP 4.2.7 Patch 147
NTP 4.2.7 Patch 148
NTP 4.2.7 Patch 149
NTP 4.2.7 Patch 150
NTP 4.2.7 Patch 151
NTP 4.2.7 Patch 152
NTP 4.2.7 Patch 153
NTP 4.2.7 Patch 154
NTP 4.2.7 Patch 155
NTP 4.2.7 Patch 156
NTP 4.2.7 Patch 157
NTP 4.2.7 Patch 158
NTP 4.2.7 Patch 159
NTP 4.2.7 Patch 160
NTP 4.2.7 Patch 161
NTP 4.2.7 Patch 162
NTP 4.2.7 Patch 163
NTP 4.2.7 Patch 164
NTP 4.2.7 Patch 165
NTP 4.2.7 Patch 166
NTP 4.2.7 Patch 170
NTP 4.2.7 Patch 171
NTP 4.2.7 Patch 172
NTP 4.2.7 Patch 173
NTP 4.2.7 Patch 174
NTP 4.2.7 Patch 175
NTP 4.2.7 Patch 176
NTP 4.2.7 Patch 177
NTP 4.2.7 Patch 178
NTP 4.2.7 Patch 179
NTP 4.2.7 Patch 180
NTP 4.2.7 Patch 181
NTP 4.2.7 Patch 182
NTP 4.2.7 Patch 183
NTP 4.2.7 Patch 184
NTP 4.2.7 Patch 185
NTP 4.2.7 Patch 186
NTP 4.2.7 Patch 187
NTP 4.2.7 Patch 188
NTP 4.2.7 Patch 189
NTP 4.2.7 Patch 190
NTP 4.2.7 Patch 191
NTP 4.2.7 Patch 192
NTP 4.2.7 Patch 193
NTP 4.2.7 Patch 194
NTP 4.2.7 Patch 195
NTP 4.2.7 Patch 196
NTP 4.2.7 Patch 197
NTP 4.2.7 Patch 198
NTP 4.2.7 Patch 199
NTP 4.2.7 Patch 200
NTP 4.2.7 Patch 201
NTP 4.2.7 Patch 202
NTP 4.2.7 Patch 203
NTP 4.2.7 Patch 204
NTP 4.2.7 Patch 205
NTP 4.2.7 Patch 206
NTP 4.2.7 Patch 207
NTP 4.2.7 Patch 208
NTP 4.2.7 Patch 209
NTP 4.2.7 Patch 210
NTP 4.2.7 Patch 211
NTP 4.2.7 Patch 212
NTP 4.2.7 Patch 213
NTP 4.2.7 Patch 214
NTP 4.2.7 Patch 215
NTP 4.2.7 Patch 216
NTP 4.2.7 Patch 217
NTP 4.2.7 Patch 218
NTP 4.2.7 Patch 219
NTP 4.2.7 Patch 22
NTP 4.2.7 Patch 220
NTP 4.2.7 Patch 221
NTP 4.2.7 Patch 222
NTP 4.2.7 Patch 223
NTP 4.2.7 Patch 224
NTP 4.2.7 Patch 225
NTP 4.2.7 Patch 226
NTP 4.2.7 Patch 227
NTP 4.2.7 Patch 228
NTP 4.2.7 Patch 229
NTP 4.2.7 Patch 23
NTP 4.2.7 Patch 230
NTP 4.2.7 Patch 231
NTP 4.2.7 Patch 232
NTP 4.2.7 Patch 233
NTP 4.2.7 Patch 234
NTP 4.2.7 Patch 235
NTP 4.2.7 Patch 236
NTP 4.2.7 Patch 237
NTP 4.2.7 Patch 238
NTP 4.2.7 Patch 239
NTP 4.2.7 Patch 24
NTP 4.2.7 Patch 240
NTP 4.2.7 Patch 241
NTP 4.2.7 Patch 242
NTP 4.2.7 Patch 243
NTP 4.2.7 Patch 244
NTP 4.2.7 Patch 245
NTP 4.2.7 Patch 246
NTP 4.2.7 Patch 247
Vulnerability Description A denial-of-service vulnerability exists in NTP. Successful exploitation of this vulnerability would allow a remote attacker to create a denial of service condition on the affected system.

Protection Overview

This protection detects attempts to exploit this vulnerability.

In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, click on Protection tab and select the version of your choice.

Security Gateway R81 / R80 / R77 / R75

  1. In the IPS tab, click Protections and find the NTP Denial of Service (CVE-2016-7434) protection using the Search tool and Edit the protection's settings.
  2. Install policy on all Security Gateways.

This protection's log will contain the following information:

Attack Name:  NTP Enforcement Violation.
Attack Information:  NTP Denial of Service (CVE-2016-7434)

×
  Feedback
This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
OK