aboutsummaryrefslogtreecommitdiffstats
path: root/README
diff options
context:
space:
mode:
authorArmin Kuster <akuster808@gmail.com>2018-04-10 16:54:46 -0700
committerArmin Kuster <akuster808@gmail.com>2018-06-14 20:04:24 -0700
commit275dd812d5d6f1167a511eb6ee12400238ebc3f2 (patch)
treefe88280eef11eebfdcdeec11caa9c891a829f0a5 /README
parentfbccaab4755dbf9c9dbe5e82c3072aaa253405eb (diff)
downloadmeta-openembedded-contrib-275dd812d5d6f1167a511eb6ee12400238ebc3f2.tar.gz
ntp: update to 4.2.8.p11
This release addresses five security issues in ntpd: LOW/MEDIUM: Sec 3012 / CVE-2016-1549 / VU#961909: Sybil vulnerability: ephemeral association attack INFO/MEDIUM: Sec 3412 / CVE-2018-7182 / VU#961909: ctl_getitem(): buffer read overrun leads to undefined behavior and information leak LOW: Sec 3415 / CVE-2018-7170 / VU#961909: Multiple authenticated ephemeral associations LOW: Sec 3453 / CVE-2018-7184 / VU#961909: Interleaved symmetric mode cannot recover from bad state LOW/MEDIUM: Sec 3454 / CVE-2018-7185 / VU#961909: Unauthenticated packet can reset authenticated interleaved association one security issue in ntpq: MEDIUM: Sec 3414 / CVE-2018-7183 / VU#961909: ntpq:decodearr() can write beyond its buffer limit Signed-off-by: Armin Kuster <akuster@mvista.com> (cherry picked from commit 18b4b0ec545488be913b35ea9243292b578ca35f) Signed-off-by: Armin Kuster <akuster808@gmail.com>
Diffstat (limited to 'README')
0 files changed, 0 insertions, 0 deletions