Back

HIGH

ntp: config command can be used to set the pidfile and drift file paths

Published Jul 24, 2017

Description

The "pidfile" or "driftfile" directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address that is allowed to send configuration requests, and with knowledge of the remote configuration password to write to arbitrary files via the :config command.

Affected products

Remediation

Red Hat mitigation

Disable remote runtime configuration with ntpq or ntpdc. In the default NTP configuration on Red Hat Enterprise Linux, runtime configuration with ntpq or ntpdc is limited to localhost.

Metrics

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jul 24, 2017
Updated Aug 6, 2024
Reserved Oct 4, 2015
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Aug 25, 2015