Skip to Content.
Sympa Menu

perfsonar-user - Re: [perfsonar-user] CVE-2014-9295 ntp: Multiple buffer overflows via specially-crafted packets

Subject: perfSONAR User Q&A and Other Discussion

List archive

Re: [perfsonar-user] CVE-2014-9295 ntp: Multiple buffer overflows via specially-crafted packets


Chronological Thread 
  • From: Christoph Galuschka <>
  • To:
  • Subject: Re: [perfsonar-user] CVE-2014-9295 ntp: Multiple buffer overflows via specially-crafted packets
  • Date: Sat, 20 Dec 2014 11:18:28 +0100
  • Organization: The CentOS-Project

Hi everyone,

Am 19.12.2014 um 23:24 schrieb Jason Zurawski:
Greetings All;

The year wouldn’t be complete without at least one more security concern for
everyone to be aware of. Turn your attention to the following -
“CVE-2014-9295 ntp: Multiple buffer overflows via specially-crafted packets”:

https://access.redhat.com/security/cve/CVE-2014-9295

Information is is still scarce on this thus far, we have not seen any word
come down on the CentOS mailing lists regarding packages. There is some
chatter on the actual issue tracker item that is useful:

https://bugzilla.redhat.com/show_bug.cgi?id=1176037


an updated ntp RPM for CentOS-6 was released early saturday morning. That package fixes the above mentioned issues.

all the best
Christoph

--
Christoph Galuschka
CentOS-QA-Team member | IRC: tigalch



Archive powered by MHonArc 2.6.16.

Top of Page