NTP before 4.2.8p9 allows remote attackers to bypass the origin timestamp protection mechanism via an origin timestamp of zero. NOTE: this vulnerability exists because of a CVE-2015-8138 regression.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-7431.json"
[ { "events": [ { "introduced": "0" }, { "last_affected": "4.2.8-p8" } ] } ]