CVE-2015-7976
Published: 31 December 2015
The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a crafted filename.
Notes
Author | Note |
---|---|
mdeslaur |
unfixed in debian and fedora |
Priority
Status
Package | Release | Status |
---|---|---|
ntp
Launchpad, Ubuntu, Debian |
precise |
Released
(1:4.2.6.p3+dfsg-1ubuntu3.11)
|
trusty |
Released
(1:4.2.6.p5+dfsg-3ubuntu2.14.04.10)
|
|
upstream |
Released
(4.2.8p6)
|
|
vivid |
Ignored
(end of life)
|
|
wily |
Ignored
(end of life)
|
|
xenial |
Released
(1:4.2.8p4+dfsg-3ubuntu5.3)
|
|
yakkety |
Not vulnerable
(1:4.2.8p4+dfsg-3ubuntu6)
|
|
zesty |
Not vulnerable
(1:4.2.8p4+dfsg-3ubuntu6)
|
|
Patches:
upstream: https://github.com/ntp-project/ntp/commit/7fe04606062ed674db3b9553d32dedad29504d61 upstream: https://github.com/ntp-project/ntp/commit/3680c2e4d5f88905ce062c7b43305d610a2c9796 |
Severity score breakdown
Parameter | Value |
---|---|
Base score | 4.3 |
Attack vector | Network |
Attack complexity | Low |
Privileges required | Low |
User interaction | None |
Scope | Unchanged |
Confidentiality | None |
Integrity impact | Low |
Availability impact | None |
Vector | CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N |