[ntp:security] [FICORA #829967] ntpd control message crash

NCSC-FI Vulnerability Co-ordination vulncoord at ficora.fi
Tue Jun 16 09:21:08 UTC 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hello,

There seems to be a problem with ntpd 4.2.8 crashing with specific
control message input. Please see the attached html file for a
description of the problem, more information is included in the pcap
and zip files. If you have any questions, don't hesitate to contact
us, thanks.

  Tapio

- -- 
Tapio Sokura, Information Security Specialist
National Cyber Security Centre, Finnish Communications Regulatory
Authority
Mobile +358 295 390 578, www.ficora.fi
PGP personal: 4B81 CCAE 0BAD FE07 4A56  372E A47A 8062 84AE EA8B
-----BEGIN PGP SIGNATURE-----

iQIcBAEBCAAGBQJVf+p2AAoJEARH79LeFuoM6CAQANLC4u4dW53nk73RNkAoZ4wc
tueqH9rA03ME9B0TNfXcCFhK90bWtYmxVjSMmpfl48ocvfaJMI7h3ihpDpmyfCbh
9PWb+36SYTS+iA25R+t5yded8lvoS78vWVjimkpDAYBBTTRof10u4eJU+s91JeQx
YZnvkp2ImGDZ2cU2cJe7Cb6eLZdtAUwvHD3pmCQcWqGilCZbJI3E37uOrP7BLqVQ
pMUXTktRXH1DJuIhvhwcGsj0epzhpNSz+nvO7RpyKI1WnMy6adnBADNZGHjEw+/I
0BFaFrm13DUrmD/mpImAEPcOS5gAKToClr+mKhMbCg83ugK8iCqdazrdMRc/XC5w
BGdkX3vLGEIiCwXaqvVJVWSjof5JXbJvpZUGXGowKV0Ele4EWOQcOB3769GokYV2
SmVLoun46852++wzaLd0GdlwasV/mVTC6a0O3CviI7EBdmdDUmwDdk2K64umfdUH
VTtbaRTH70HbkjSem3UfvJMK8p7gbz0ZMYnbjnNJycpF+TACqQ7ZSHnkSVqpKIAE
BzPjEupa5XIgSMlKotTTryFjj4lyjocMLzPjxQjxG8+O46k8Qn1j9yuBk/ReDT7U
3TVTbKKp9OpAsmf++u8v4q+h3ESWTD8i4cWerb+j6FCS/MXvylsC37pOZm/UqG7X
2b/UoBZN7xoJeMp9rb8A
=hXSU
-----END PGP SIGNATURE-----
-------------- next part --------------
A non-text attachment was scrubbed...
Name: ntpd-4.2.8-crash.pcapng
Type: application/octet-stream
Size: 468 bytes
Desc: not available
URL: <http://lists.ntp.org/private/security/attachments/20150616/fddb5b49/attachment-0001.obj>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: ntpd-4.2.8-crash-remediation-package.zip
Type: application/zip
Size: 574982 bytes
Desc: not available
URL: <http://lists.ntp.org/private/security/attachments/20150616/fddb5b49/attachment-0001.zip>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.ntp.org/private/security/attachments/20150616/fddb5b49/attachment-0001.html>


More information about the security mailing list