AIX NTP v4 Advisory : ntp_advisory5.asc (IV81129) (IV81130)
Medium Nessus Plugin ID 102323
SynopsisThe remote AIX host has a version of NTP installed that is affected by a data integrity vulnerability.
DescriptionThe remote AIX host has a version of Network Time Protocol (NTP) installed that has a vulnerability when ntp is started with the -g option. A remote, unauthenticated attacker could send crafted data to ntp which would enable the time to be changed, enabling further attacks.
SolutionA fix is available and can be downloaded from the IBM AIX website.