CVE-2005-2496

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/09/2005
Last modified:
03/04/2025

Description

The xntpd ntp (ntpd) daemon before 4.2.0b, when run with the -u option and using a string to specify the group, uses the group ID of the user instead of the group, which causes xntpd to run with different privileges than intended.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dave_mills:ntpd:*:*:*:*:*:*:*:* 4.2.0.a.2004-06-17_4.fc3 (including)