Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The xntpd ntp (ntpd) daemon before 4.2.0b, when run with the -u option and using a string to specify the group, uses the group ID of the user instead of the group, which causes xntpd to run with different privileges than intended.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NTPD 不安全权限漏洞
Vulnerability Description
xntpd是关于网络时间协议的守护进程,它遵循了因特网时间服务器的通用标准。 xntpd ntp (ntpd)后台进程4.2.0b以前的版本,当以-u选项运行并且使用一字符串指定组时,使用的是用户的组ID而非组。这使得xntpd可以以与预定权限不同的权限运行。
CVSS Information
N/A
Vulnerability Type
N/A