vulnerability
SUSE: CVE-2015-7976: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
4 | (AV:N/AC:L/Au:S/C:N/I:P/A:N) | Apr 28, 2016 | Apr 28, 2016 | Jun 21, 2021 |
Severity
4
CVSS
(AV:N/AC:L/Au:S/C:N/I:P/A:N)
Published
Apr 28, 2016
Added
Apr 28, 2016
Modified
Jun 21, 2021
Description
The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a crafted filename.
Solution(s)
suse-upgrade-ntpsuse-upgrade-ntp-docsuse-upgrade-yast2-ntp-clientsuse-upgrade-yast2-ntp-client-devel-doc
References
- SUSE-SUSE-SU-2016:1175
- SUSE-SUSE-SU-2016:1175-1
- SUSE-SUSE-SU-2016:1177
- SUSE-SUSE-SU-2016:1177-1
- SUSE-SUSE-SU-2016:1247
- SUSE-SUSE-SU-2016:1247-1
- SUSE-SUSE-SU-2016:1311
- SUSE-SUSE-SU-2016:1311-1
- SUSE-SUSE-SU-2016:1912
- SUSE-SUSE-SU-2016:1912-1
- SUSE-SUSE-SU-2016:2094
- SUSE-SUSE-SU-2016:2094-1
- SECTRACK-1034782
- UBUNTU-USN-3096-1
- FREEBSD-FreeBSD-SA-16:09
- GENTOO-GLSA-201607-15
- NVD-CVE-2015-7976

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.