configuration directives "pidfile" and "driftfile" should only be allowed locally. http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-7703 http://support.ntp.org/bin/view/Main/SecurityNotice#Recent_Vulnerabilities