ntp: config command can be used to set the pidfile and drift file paths
Published Oct 23, 2015
No CVSS score
Description
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-7703. Reason: This candidate is a reservation duplicate of CVE-2015-7703. Notes: All CVE users should reference CVE-2015-7703 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.
Affected products
No data.
No data.
No data.
Red Hat Enterprise Linux 7
ntp-0:4.2.6p5-25.el7
Fixed · RHSA-2016:2583
Red Hat Enterprise Linux 5
ntp
Will not fix
Red Hat Enterprise Linux 6
ntp
Affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | ntp-0:4.2.6p5-25.el7 | Fixed | RHSA-2016:2583 |
| Red Hat Enterprise Linux 5 | ntp | Will not fix | n/a |
| Red Hat Enterprise Linux 6 | ntp | Affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Disable remote runtime configuration with ntpq or ntpdc. In the default NTP configuration on Red Hat Enterprise Linux, runtime configuration with ntpq or ntpdc is limited to localhost.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
No CVSS v2.0 score for this CVE.
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
No EPSS score for this CVE.
References (4)
- https://access.redhat.com/security/cve/CVE-2015-5196 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1254547 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2015-5196
- https://www.cve.org/CVERecord?id=CVE-2015-5196
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2015-5196 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1254547 | Issue Tracking | |
| https://nvd.nist.gov/vuln/detail/CVE-2015-5196 | ||
| https://www.cve.org/CVERecord?id=CVE-2015-5196 |
Change history (0)
No recorded changes yet.