OVMSA-2014-0085 - ntp security update
Type: | SECURITY |
Severity: | IMPORTANT |
Release Date: | 2014-12-23 |
Description
[4.2.6p5-2]
- don't generate weak control key for resolver (CVE-2014-9293)
- don't generate weak MD5 keys in ntp-keygen (CVE-2014-9294)
- fix buffer overflows via specially-crafted packets (CVE-2014-9295)
- don't mobilize passive association when authentication fails (CVE-2014-9296)
Related CVEs
Updated Packages
Release/Architecture | Filename | MD5sum | Superseded By Advisory |
|
Oracle VM 3.3 (x86_64) | ntp-4.2.6p5-2.el6_6.src.rpm | dd6a6e1458da216cfe5b393065982a4f | OVMSA-2018-0290 |
| ntp-4.2.6p5-2.el6_6.x86_64.rpm | 7c892b6a276bf59d396a0880ba5b5646 | OVMSA-2018-0290 |
| ntpdate-4.2.6p5-2.el6_6.x86_64.rpm | a856123ca3bd10bfafaca279308980c5 | OVMSA-2018-0290 |
This page is generated automatically and has not been checked for errors or omissions. For clarification
or corrections please contact the Oracle Linux ULN team