Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2019:0082-1

Опубликовано: 23 мар. 2019
Источник: suse-cvrf

Описание

Security update for ntpsec

This update for ntpsec to version 1.1.3 fixes the following issues:

Security issues fixed:

  • CVE-2019-6442: Fixed a out of bounds write via a malformed config request (boo#1122132)
  • CVE-2019-6443: Fixed a stack-based buffer over-read in the ctl_getitem function (boo#1122144)
  • CVE-2019-6444: Fixed a stack-based buffer over-read in the process_control function (boo#1122134)
  • CVE-2019-6445: Fixed a NULL pointer dereference in the ctl_getitem function (boo#1122131)

Список пакетов

openSUSE Leap 15.0
ntpsec-1.1.3-lp150.2.3.1
ntpsec-utils-1.1.3-lp150.2.3.1
python3-ntp-1.1.3-lp150.2.3.1

Описание

An issue was discovered in NTPsec before 1.1.3. An authenticated attacker can write one byte out of bounds in ntpd via a malformed config request, related to config_remotely in ntp_config.c, yyparse in ntp_parser.tab.c, and yyerror in ntp_parser.y.


Затронутые продукты
openSUSE Leap 15.0:ntpsec-1.1.3-lp150.2.3.1
openSUSE Leap 15.0:ntpsec-utils-1.1.3-lp150.2.3.1
openSUSE Leap 15.0:python3-ntp-1.1.3-lp150.2.3.1

Ссылки

Описание

An issue was discovered in NTPsec before 1.1.3. Because of a bug in ctl_getitem, there is a stack-based buffer over-read in read_sysvars in ntp_control.c in ntpd.


Затронутые продукты
openSUSE Leap 15.0:ntpsec-1.1.3-lp150.2.3.1
openSUSE Leap 15.0:ntpsec-utils-1.1.3-lp150.2.3.1
openSUSE Leap 15.0:python3-ntp-1.1.3-lp150.2.3.1

Ссылки

Описание

An issue was discovered in NTPsec before 1.1.3. process_control() in ntp_control.c has a stack-based buffer over-read because attacker-controlled data is dereferenced by ntohl() in ntpd.


Затронутые продукты
openSUSE Leap 15.0:ntpsec-1.1.3-lp150.2.3.1
openSUSE Leap 15.0:ntpsec-utils-1.1.3-lp150.2.3.1
openSUSE Leap 15.0:python3-ntp-1.1.3-lp150.2.3.1

Ссылки

Описание

An issue was discovered in NTPsec before 1.1.3. An authenticated attacker can cause a NULL pointer dereference and ntpd crash in ntp_control.c, related to ctl_getitem.


Затронутые продукты
openSUSE Leap 15.0:ntpsec-1.1.3-lp150.2.3.1
openSUSE Leap 15.0:ntpsec-utils-1.1.3-lp150.2.3.1
openSUSE Leap 15.0:python3-ntp-1.1.3-lp150.2.3.1

Ссылки