Potential security vulnerabilities have been identified with HP-UX running NTP. Thesecould be exploited remotely to execute code, create a Denial of Service (DoS), or othervulnerabilities.
Description:
The config_auth function in ntpd in NTP before 4.2.7p11, when an auth key is not configured, improperly generates a key, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a brute-force attack.