Lucene search

K
suseSuseSUSE-SA:2001:10
HistoryApr 09, 2016 - 10:30 p.m.

remote root compromise in xntp

2016-04-0922:30:00
lists.opensuse.org
30

0.968 High

EPSS

Percentile

99.7%

xntp is the network time protocol package widely used with many unix and linux systems for system time synchronization over a network. An exploit published by Przemyslaw Frasunek demonstrates a buffer overflow in the control request parsing code. The exploit allows a remote attacker to execute arbitrary commands as root. All versions as shipped with SuSE Linux are affected by the buffer overflow problem.

0.968 High

EPSS

Percentile

99.7%