← Back

CVE-2016-3698

nvd nist
Published: Jun 13, 2016Modified: May 6, 2026

JSON object

Loading...
8.1
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.2 / Impact: 5.9
Source: NVD

Description

libndp before 1.6, as used in NetworkManager, does not properly validate the origin of Neighbor Discovery Protocol (NDP) messages, which allows remote attackers to conduct man-in-the-middle attacks or cause a denial of service (network connectivity disruption) by advertising a node as a router from a non-local network.

Affected (11)

Show all products
7 products
Enterprise Linux Desktop
Enterprise Linux Hpc Node
Enterprise Linux Hpc Node Eus
Enterprise Linux Server
Enterprise Linux Server Aus
Enterprise Linux Server Eus
Enterprise Linux Workstation
1 product
Libndp
1 product
Debian Linux
1 product
Ubuntu Linux
Configuration A
7 vulnerable
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 1.5
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0
Configuration D
2 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 15.10
Version 16.04

Timeline

No history available yet.