[ntp:security] [Bug 3082] Remote pre-authentication single packet denial of service vulnerability caused by null pointer dereference in _IO_str_init_static_internal()

bugzilla-daemon at ntp.org bugzilla-daemon at ntp.org
Mon Nov 21 15:04:54 UTC 2016


http://bugs.ntp.org/show_bug.cgi?id=3082

Harlan Stenn <stenn at ntp.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|STAGED                      |RESOLVED
              Group|Security                    |
                 CC|                            |bugs at ntp.org
          Component|Security Bugs               |ntpd
         Resolution|                            |FIXED
         AssignedTo|perlinger at ntp.org           |stenn at ntp.org

--- Comment #13 from Harlan Stenn <stenn at ntp.org> 2016-11-21 15:04:54 UTC ---
Magnus,

Thanks for the report.  Please check ntp-4.2.8p9 and mark this bug as VERIFIED
or IN_PROGRESS, as appropriate.

Pearly, thanks for your work on this.

-- 
Configure bugmail: http://bugs.ntp.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.


More information about the security mailing list