CVE-2005-2496

N/A Unknown
Published: September 02, 2005 Modified: April 16, 2026
View on NVD

Description

The xntpd ntp (ntpd) daemon before 4.2.0b, when run with the -u option and using a string to specify the group, uses the group ID of the user instead of the group, which causes xntpd to run with different privileges than intended.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/16602
Source: secalert@redhat.com
Vendor Advisory
http://secunia.com/advisories/21464
Source: secalert@redhat.com
http://securitytracker.com/id?1016679
Source: secalert@redhat.com
http://www.osvdb.org/19055
Source: secalert@redhat.com
http://www.securityfocus.com/bid/14673
Source: secalert@redhat.com
http://www.securityspace.com/smysecure/catid.html?id=55155
Source: secalert@redhat.com
Vendor Advisory
http://secunia.com/advisories/16602
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/21464
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016679
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.debian.org/security/2005/dsa-801
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.mandriva.com/security/advisories?name=MDKSA-2005:156
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/19055
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.redhat.com/support/errata/RHSA-2006-0393.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/14673
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityspace.com/smysecure/catid.html?id=55155
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.vupen.com/english/advisories/2005/1561
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/22035
Source: af854a3a-2127-422b-91ae-364da2661108

24 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
0.1%
25th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

dave_mills