SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2015-5300

The panic_gate check in NTP before 4.2.8p5 is only re-enabled after the first change to the system clock that was greater than 128 milliseconds by default, which allows remote attackers to set NTP to an arbitrary time when started with the -g option, or…

HIGH 7.5EPSS 9.13%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (9.13%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

The panic_gate check in NTP before 4.2.8p5 is only re-enabled after the first change to the system clock that was greater than 128 milliseconds by default, which allows remote attackers to set NTP to an arbitrary time when started with the -g option, or to alter the time by up to 900 seconds otherwise by responding to an unspecified number of requests from trusted sources, and leveraging a resulting denial of service (abort and restart).

CVSS 3.0
7.5 HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS
9.13% probability · 95th percentile
CISA KEV
Not listed
Weakness
CWE-361
Affected
fedoraproject/fedora · suse/linux enterprise debuginfo · opensuse/leap · opensuse/opensuse · suse/linux enterprise desktop · suse/linux enterprise server · suse/linux enterprise software development kit · suse/manager · suse/manager proxy · suse/openstack cloud · suse/suse linux enterprise server · redhat/enterprise linux desktop · redhat/enterprise linux hpc node · redhat/enterprise linux hpc node eus · redhat/enterprise linux server · redhat/enterprise linux server eus · redhat/enterprise linux workstation · debian/debian linux · canonical/ubuntu linux · ntp/ntp
Source
secalert@redhat.com

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.