CVE-2016-0727
NTP - Local Privilege Escalation
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
The crontab script in the ntp package before 1:4.2.6.p3+dfsg-1ubuntu3.11 on Ubuntu 12.04 LTS, before 1:4.2.6.p5+dfsg-3ubuntu2.14.04.10 on Ubuntu 14.04 LTS, on Ubuntu Wily, and before 1:4.2.8p4+dfsg-3ubuntu5.3 on Ubuntu 16.04 LTS allows local users with access to the ntp account to write to arbitrary files and consequently gain privileges via vectors involving statistics directory cleanup.
El script crontab en el paquete ntp en versiones anteriores a 1:4.2.6.p3+dfsg-1ubuntu3.11 en Ubuntu 12.04 LTS, en versiones anteriores a 1: 4.2.6.p5+dfsg-3ubuntu2.14.04.10 en Ubuntu 14.04 LTS, en Ubuntu Wily , Y en versiones anteriores a 1: 4.2.8p4 + dfsg-3ubuntu5.3 en Ubuntu 16.04 LTS permite a los usuarios locales con acceso a la cuenta ntp escribir en archivos arbitrarios y consecuentemente obtener privilegios a travĂ©s de vectores que implican la limpieza del directorio de estadĂsticas.
NTP suffers from a privilege escalation vulnerability.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-12-16 CVE Reserved
- 2016-01-21 First Exploit
- 2016-10-05 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/81552 | Third Party Advisory | |
http://www.securitytracker.com/id/1034808 | Third Party Advisory | |
https://bugzilla.redhat.com/show_bug.cgi?id=1382369 | Issue Tracking |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/41764 | 2016-01-21 | |
http://packetstormsecurity.com/files/141913/NTP-Privilege-Escalation.html | 2024-08-05 |
URL | Date | SRC |
---|---|---|
https://bugs.launchpad.net/ubuntu/+source/ntp/+bug/1528050 | 2017-04-20 |
URL | Date | SRC |
---|---|---|
http://www.ubuntu.com/usn/USN-3096-1 | 2017-04-20 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 12.04 Search vendor "Canonical" for product "Ubuntu Linux" and version "12.04" | lts |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 14.04 Search vendor "Canonical" for product "Ubuntu Linux" and version "14.04" | lts |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 16.04 Search vendor "Canonical" for product "Ubuntu Linux" and version "16.04" | lts |
Affected
|