Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2019:0777-1

Опубликовано: 27 мар. 2019
Источник: suse-cvrf

Описание

Security update for ntp

This update for ntp fixes the following issues:

Security issue fixed:

  • CVE-2019-8936: Fixed a null pointer exception which could allow an authenticated attcker to cause segmentation fault to ntpd (bsc#1128525).

Other issues addressed:

  • Fixed several bugs in the BANCOMM reclock driver.
  • Fixed ntp_loopfilter.c snprintf compilation warnings.
  • Fixed spurious initgroups() error message.
  • Fixed STA_NANO struct timex units.
  • Fixed GPS week rollover in libparse.
  • Fixed incorrect poll interval in packet.
  • Added a missing check for ENABLE_CMAC.

Список пакетов

Image SLES15-SP3-SAP-Azure-LI-BYOS-Production
ntp-4.2.8p13-4.6.1
Image SLES15-SP3-SAP-Azure-VLI-BYOS-Production
ntp-4.2.8p13-4.6.1
Image SLES15-SP4-SAP-Azure-LI-BYOS
ntp-4.2.8p13-4.6.1
Image SLES15-SP4-SAP-Azure-LI-BYOS-Production
ntp-4.2.8p13-4.6.1
Image SLES15-SP4-SAP-Azure-VLI-BYOS
ntp-4.2.8p13-4.6.1
Image SLES15-SP4-SAP-Azure-VLI-BYOS-Production
ntp-4.2.8p13-4.6.1
Image SLES15-SP5-SAP-Azure-LI-BYOS
ntp-4.2.8p13-4.6.1
Image SLES15-SP5-SAP-Azure-LI-BYOS-Production
ntp-4.2.8p13-4.6.1
Image SLES15-SP5-SAP-Azure-VLI-BYOS
ntp-4.2.8p13-4.6.1
Image SLES15-SP5-SAP-Azure-VLI-BYOS-Production
ntp-4.2.8p13-4.6.1
SUSE Linux Enterprise Module for Legacy 15
ntp-4.2.8p13-4.6.1

Описание

NTP through 4.2.8p12 has a NULL Pointer Dereference.


Затронутые продукты
Image SLES15-SP3-SAP-Azure-LI-BYOS-Production:ntp-4.2.8p13-4.6.1
Image SLES15-SP3-SAP-Azure-VLI-BYOS-Production:ntp-4.2.8p13-4.6.1
Image SLES15-SP4-SAP-Azure-LI-BYOS-Production:ntp-4.2.8p13-4.6.1
Image SLES15-SP4-SAP-Azure-LI-BYOS:ntp-4.2.8p13-4.6.1

Ссылки