Lucene search

K
ubuntucveUbuntu.comUB:CVE-2005-2496
HistorySep 02, 2005 - 12:00 a.m.

CVE-2005-2496

2005-09-0200:00:00
ubuntu.com
ubuntu.com
6

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

0.001 Low

EPSS

Percentile

30.4%

The xntpd ntp (ntpd) daemon before 4.2.0b, when run with the -u option and
using a string to specify the group, uses the group ID of the user instead
of the group, which causes xntpd to run with different privileges than
intended.

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

0.001 Low

EPSS

Percentile

30.4%