Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2015-7703
Description:The "pidfile" or "driftfile" directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address that is allowed to send configuration requests, and with knowledge of the remote configuration password to write to arbitrary files via the :config command.
Test IDs: 1.3.6.1.4.1.25623.1.0.105668   1.3.6.1.4.1.25623.1.1.1.2.2015.335   1.3.6.1.4.1.25623.1.0.810221   1.3.6.1.4.1.25623.1.1.4.2016.2094.1   1.3.6.1.4.1.25623.1.0.871612   1.3.6.1.4.1.25623.1.0.811253   1.3.6.1.4.1.25623.1.1.4.2015.2058.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2015-7703
BugTraq ID: 77278
http://www.securityfocus.com/bid/77278
Debian Security Information: DSA-3388 (Google Search)
http://www.debian.org/security/2015/dsa-3388
https://security.gentoo.org/glsa/201607-15
RedHat Security Advisories: RHSA-2016:0780
http://rhn.redhat.com/errata/RHSA-2016-0780.html
RedHat Security Advisories: RHSA-2016:2583
http://rhn.redhat.com/errata/RHSA-2016-2583.html
http://www.securitytracker.com/id/1033951




© 1998-2025 E-Soft Inc. All rights reserved.