{
  "schema_version": "1.7.0",
  "id": "RHSA-2015:1459",
  "related": [],
  "upstream": [
    "CVE-2014-9297",
    "CVE-2014-9298",
    "CVE-2014-9750",
    "CVE-2014-9751",
    "CVE-2015-1798",
    "CVE-2015-1799",
    "CVE-2015-3405"
  ],
  "published": "2024-09-15T22:22:21Z",
  "modified": "2026-05-13T10:02:16Z",
  "summary": "Red Hat Security Advisory: ntp security, bug fix, and enhancement update",
  "affected": [
    {
      "package": {
        "name": "ntp",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ntp"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ntp-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-doc",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ntp-doc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-perl",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ntp-perl"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntpdate",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ntpdate"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ntp"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ntp-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-doc",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ntp-doc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-perl",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ntp-perl"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntpdate",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ntpdate"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ntp"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ntp-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-doc",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ntp-doc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-perl",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ntp-perl"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntpdate",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ntpdate"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ntp"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ntp-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-doc",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ntp-doc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntp-perl",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ntp-perl"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ntpdate",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ntpdate"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.6p5-5.el6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2015:1459"
    },
    {
      "type": "ARTICLE",
      "url": "https://access.redhat.com/security/updates/classification/#moderate"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=995134"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1045376"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1117704"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1122015"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1165141"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1166596"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1171630"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1184572"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1184573"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1190619"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1193849"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1193850"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1199430"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1199435"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1210324"
    },
    {
      "type": "ADVISORY",
      "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2015/rhsa-2015_1459.json"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2014-9297"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2014-9297"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-9297"
    },
    {
      "type": "ARTICLE",
      "url": "http://support.ntp.org/bin/view/Main/SecurityNotice#vallen_is_not_validated_in_sever"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2014-9298"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2014-9298"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-9298"
    },
    {
      "type": "ARTICLE",
      "url": "http://support.ntp.org/bin/view/Main/SecurityNotice#1_can_be_spoofed_on_some_OSes_so"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2014-9750"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2014-9750"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-9750"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2014-9751"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2014-9751"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-9751"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2015-1798"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2015-1798"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1798"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2015-1799"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2015-1799"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1799"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2015-3405"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2015-3405"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3405"
    }
  ]
}