Oracle alert ELSA-2018-3854 (ntp)
| From: | Errata Announcements for Oracle Linux <el-errata@oss.oracle.com> | |
| To: | el-errata@oss.oracle.com | |
| Subject: | [El-errata] ELSA-2018-3854 Low: Oracle Linux 6 ntp security update | |
| Date: | Wed, 19 Dec 2018 12:16:21 -0800 | |
| Message-ID: | <635318bf-4f4c-994d-000c-82fa33831028@oracle.com> |
Oracle Linux Security Advisory ELSA-2018-3854 http://linux.oracle.com/errata/ELSA-2018-3854.html The following updated rpms for Oracle Linux 6 have been uploaded to the Unbreakable Linux Network: i386: ntp-4.2.6p5-15.0.1.el6_10.i686.rpm ntp-doc-4.2.6p5-15.0.1.el6_10.noarch.rpm ntp-perl-4.2.6p5-15.0.1.el6_10.i686.rpm ntpdate-4.2.6p5-15.0.1.el6_10.i686.rpm x86_64: ntp-4.2.6p5-15.0.1.el6_10.x86_64.rpm ntp-doc-4.2.6p5-15.0.1.el6_10.noarch.rpm ntp-perl-4.2.6p5-15.0.1.el6_10.x86_64.rpm ntpdate-4.2.6p5-15.0.1.el6_10.x86_64.rpm SRPMS: http://oss.oracle.com/ol6/SRPMS-updates/ntp-4.2.6p5-15.0.... Description of changes: [4.2.6p5-15.0.1] - add disable monitor to default ntp.conf [CVE-2013-5211] [4.2.6p5-15] - fix buffer overflow in parsing of address in ntpq and ntpdc (CVE-2018-12327) [4.2.6p5-14] - fix CVE-2016-7429 patch to work correctly on multicast client (#1422973) [4.2.6p5-13] - fix buffer overflow in datum refclock driver (CVE-2017-6462) - fix crash with invalid unpeer command (CVE-2017-6463) - fix potential crash with invalid server command (CVE-2017-6464) _______________________________________________ El-errata mailing list El-errata@oss.oracle.com https://oss.oracle.com/mailman/listinfo/el-errata
