<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:10:30 +0000</lastBuildDate>
    <item>
      <title>certfr-2015-avi-449 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;NTP&lt;/span&gt;. Elles permettent à un attaquant de…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2015-avi-449</link>
      <description>certfr-2015-avi-449</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2015-avi-449</guid>
    </item>
    <item>
      <title>cnvd-2015-07016</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2015-07016</link>
      <description>cnvd-2015-07016</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2015-07016</guid>
    </item>
    <item>
      <title>EUVD-2026-95262</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-95262</link>
      <description>EUVD-2026-95262</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-95262</guid>
    </item>
    <item>
      <title>fkie_cve-2015-7703</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2015-7703</link>
      <description>&lt;p&gt;The &amp;#34;pidfile&amp;#34; or &amp;#34;driftfile&amp;#34; directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address that is allowed to send configuration requests, and with knowledge of the remote configuration password to write to arbitrary files via the :config command.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The &amp;#34;pidfile&amp;#34; or &amp;#34;driftfile&amp;#34; directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address that is allowed to send configuration requests, and with knowledge of the remote configuration password to write to arbitrary files via the :config command.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2015-7703</guid>
    </item>
    <item>
      <title>GHSA-p9hx-j72m-8cf4</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-p9hx-j72m-8cf4</link>
      <description>&lt;p&gt;The &amp;#34;pidfile&amp;#34; or &amp;#34;driftfile&amp;#34; directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address that is allowed to send configuration requests, and with knowledge of the remote configuration password to write to arbitrary files via the :config command.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The &amp;#34;pidfile&amp;#34; or &amp;#34;driftfile&amp;#34; directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address that is allowed to send configuration requests, and with knowledge of the remote configuration password to write to arbitrary files via the :config command.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-p9hx-j72m-8cf4</guid>
    </item>
    <item>
      <title>gsd-2015-7703</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2015-7703</link>
      <description>gsd-2015-7703</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2015-7703</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10181-1 — ntp-4.2.8p9-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10181-1</link>
      <description>&lt;p&gt;ntp-4.2.8p9-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ntp-4.2.8p9-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10181-1</guid>
    </item>
    <item>
      <title>RHSA-2016:0780 — Red Hat Security Advisory: ntp security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2016:0780</link>
      <description>&lt;p&gt;ntp: crash with crafted logconfig configuration command ntp: ntpd crash when processing config commands with statistics type ntp: infinite loop in sntp processing crafted packet ntp: incomplete checks in ntp_crypto.c ntp: incomplete checks in ntp_crypto.c ntp: slow memory leak in CRYPTO_ASSOC ntp: incomplete checks in ntp_crypto.c ntp: config command can be used to set the pidfile and drift file paths ntp: ntpq atoascii memory corruption vulnerability ntp: restriction list NULL pointer dereference ntp: stack exhaustion in recursive traversal of restriction list&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ntp: crash with crafted logconfig configuration command ntp: ntpd crash when processing config commands with statistics type ntp: infinite loop in sntp processing crafted packet ntp: incomplete checks in ntp_crypto.c ntp: incomplete checks in ntp_crypto.c ntp: slow memory leak in CRYPTO_ASSOC ntp: incomplete checks in ntp_crypto.c ntp: config command can be used to set the pidfile and drift file paths ntp: ntpq atoascii memory corruption vulnerability ntp: restriction list NULL pointer dereference ntp: stack exhaustion in recursive traversal of restriction list&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2016:0780</guid>
    </item>
    <item>
      <title>SUSE-SU-2015:2058-1 — Security update for ntp</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2015:2058-1</link>
      <description>&lt;p&gt;Security update for ntp&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for ntp&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2015:2058-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2015-7703</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-7703</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: ntp&lt;/p&gt;
&lt;p&gt;The &amp;#34;pidfile&amp;#34; or &amp;#34;driftfile&amp;#34; directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address that is allowed to send configuration requests, and with knowledge of the remote configuration password to write to arbitrary files via the :config command.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: ntp&lt;/p&gt;
&lt;p&gt;The &amp;#34;pidfile&amp;#34; or &amp;#34;driftfile&amp;#34; directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address that is allowed to send configuration requests, and with knowledge of the remote configuration password to write to arbitrary files via the :config command.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-7703</guid>
    </item>
    <item>
      <title>VDE-2022-032 — AUMA: Multiple Vulnerabilities in Automation Runtime NTP Service</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2022-032</link>
      <description>&lt;p&gt;The SIMA2 Master Station features an NTP service based on ntpd, a reference implementation of the Network Time Protocol (NTP). Affected SIMA2 Master Stations with software version &amp;lt; V2.6 include an outdated version of ntpd which is affected by a large number of vulnerabilities&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The SIMA2 Master Station features an NTP service based on ntpd, a reference implementation of the Network Time Protocol (NTP). Affected SIMA2 Master Stations with software version &amp;lt; V2.6 include an outdated version of ntpd which is affected by a large number of vulnerabilities&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2022-032</guid>
    </item>
  </channel>
</rss>
