diff options
author | Armin Kuster <akuster808@gmail.com> | 2018-04-10 16:54:46 -0700 |
---|---|---|
committer | Armin Kuster <akuster808@gmail.com> | 2018-05-17 08:32:26 -0700 |
commit | 18b4b0ec545488be913b35ea9243292b578ca35f (patch) | |
tree | 5ecf5446ce5407fde55296848c46b70e0bc5bf5b /meta-networking/recipes-daemons | |
parent | c5d027d5e1e40ee835a936148aef2fe2afb8b33e (diff) | |
download | meta-openembedded-18b4b0ec545488be913b35ea9243292b578ca35f.tar.gz |
ntp: update to 4.2.8.p11
This release addresses five security issues in ntpd:
LOW/MEDIUM: Sec 3012 / CVE-2016-1549 / VU#961909: Sybil vulnerability: ephemeral association attack
INFO/MEDIUM: Sec 3412 / CVE-2018-7182 / VU#961909: ctl_getitem(): buffer read overrun leads to undefined behavior and information leak
LOW: Sec 3415 / CVE-2018-7170 / VU#961909: Multiple authenticated ephemeral associations
LOW: Sec 3453 / CVE-2018-7184 / VU#961909: Interleaved symmetric mode cannot recover from bad state
LOW/MEDIUM: Sec 3454 / CVE-2018-7185 / VU#961909: Unauthenticated packet can reset authenticated interleaved association
one security issue in ntpq:
MEDIUM: Sec 3414 / CVE-2018-7183 / VU#961909: ntpq:decodearr() can write beyond its buffer limit
Signed-off-by: Armin Kuster <akuster@mvista.com>
Diffstat (limited to 'meta-networking/recipes-daemons')
0 files changed, 0 insertions, 0 deletions