4.6
CVE-2005-2496
- EPSS 0.09%
- Veröffentlicht 02.09.2005 17:03:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
The xntpd ntp (ntpd) daemon before 4.2.0b, when run with the -u option and using a string to specify the group, uses the group ID of the user instead of the group, which causes xntpd to run with different privileges than intended.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dave Mills ≫ Ntpd Version <= 4.2.0.a.2004-06-17_4.fc3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.09% | 0.261 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|