summaryrefslogtreecommitdiff
path: root/net/ntp4
diff options
context:
space:
mode:
authortnn <tnn@pkgsrc.org>2009-09-06 10:20:21 +0000
committertnn <tnn@pkgsrc.org>2009-09-06 10:20:21 +0000
commitded4e0f65d72b82752eaf89f23268abe51f34c52 (patch)
treee122c22d552a55970d5d3bf86c650c1451bc4d98 /net/ntp4
parent21e45069959275ae1af549487b6d45c12666295e (diff)
downloadpkgsrc-ded4e0f65d72b82752eaf89f23268abe51f34c52.tar.gz
NTP 4.2.4p7, 2009/05/04
Focus: Security and Bug Fixes Severity: HIGH This release fixes the following high-severity vulnerability: * [Sec 1151] Remote exploit if autokey is enabled. CVE-2009-1252 See http://support.ntp.org/security for more information. If autokey is enabled (if ntp.conf contains a "crypto pw whatever" line) then a carefully crafted packet sent to the machine will cause a buffer overflow and possible execution of injected code, running with the privileges of the ntpd process (often root). Credit for finding this vulnerability goes to Chris Ries of CMU. This release fixes the following low-severity vulnerabilities: * [Sec 1144] limited (two byte) buffer overflow in ntpq. CVE-2009-0159 Credit for finding this vulnerability goes to Geoff Keating of Apple. * [Sec 1149] use SO_EXCLUSIVEADDRUSE on Windows Credit for finding this issue goes to Dave Hart. This release fixes a number of bugs and adds some improvements: * Improved logging * Fix many compiler warnings * Many fixes and improvements for Windows * Adds support for AIX 6.1 * Resolves some issues under MacOS X and Solaris
Diffstat (limited to 'net/ntp4')
-rw-r--r--net/ntp4/Makefile4
-rw-r--r--net/ntp4/distinfo8
2 files changed, 6 insertions, 6 deletions
diff --git a/net/ntp4/Makefile b/net/ntp4/Makefile
index 88d1f37f938..43f57dad25c 100644
--- a/net/ntp4/Makefile
+++ b/net/ntp4/Makefile
@@ -1,7 +1,7 @@
-# $NetBSD: Makefile,v 1.59 2009/01/26 20:06:15 kefren Exp $
+# $NetBSD: Makefile,v 1.60 2009/09/06 10:20:21 tnn Exp $
#
-DISTNAME= ntp-4.2.4p6
+DISTNAME= ntp-4.2.4p7
CATEGORIES= net time
MASTER_SITES= http://www.eecis.udel.edu/~ntp/ntp_spool/ntp4/ntp-4.2/ \
ftp://ftp.udel.edu/pub/ntp/ntp4/
diff --git a/net/ntp4/distinfo b/net/ntp4/distinfo
index f79aa8b8fa3..d671781de3f 100644
--- a/net/ntp4/distinfo
+++ b/net/ntp4/distinfo
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.12 2009/01/26 20:06:15 kefren Exp $
+$NetBSD: distinfo,v 1.13 2009/09/06 10:20:21 tnn Exp $
-SHA1 (ntp-4.2.4p6.tar.gz) = ad4b068cc03ce346a6276ed6b31c026b6ffc3d92
-RMD160 (ntp-4.2.4p6.tar.gz) = d3853bdd593b49c435ec19b95066097ef5e71acc
-Size (ntp-4.2.4p6.tar.gz) = 3443787 bytes
+SHA1 (ntp-4.2.4p7.tar.gz) = 8476f75daffe9851cc6f33d170902bce77637499
+RMD160 (ntp-4.2.4p7.tar.gz) = 11d69176c8cb4b95f7e9f468c37ab8fc53a28876
+Size (ntp-4.2.4p7.tar.gz) = 3382146 bytes