Red Hat Security Advisory 2016-0780-01

Discussion in 'News Aggregator' started by Packet Storm, 11 May 2016.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2016-0780-01 - The Network Time Protocol is used to synchronize a computer's time with another referenced time source. These packages include the ntpd service which continuously adjusts system time and utilities used to query and configure the ntpd service. Security Fix: It was found that the fix for CVE-2014-9750 was incomplete: three issues were found in the value length checks in NTP's ntp_crypto.c, where a packet with particular autokey operations that contained malicious data was not always being completely validated. A remote attacker could use a specially crafted NTP packet to crash ntpd.

    Continue reading...
     

Share This Page

Loading...