Fedora 20 Security Update: ntp-4.2.6p5-20.fc20

Resolved Bugs
1184572 – CVE-2014-9298 ntp: drop packets with source address ::1
1189412 – CVE-2014-9297 ntp: improper vallen validation in ntp_crypto.c [fedora-all]
1184573 – CVE-2014-9297 ntp: vallen in extension fields are not validated
1189413 – CVE-2014-9298 ntp: ACL bypass via ::1 IPv6 address spoofing [fedora-all]<br
Security fix for CVE-2014-9297, CVE-2014-9298

Leave a Reply