ntp-4.2.6p5-15.0.1.AXS4
エラータID: AXSA:2019-3823:01
リリース日:
2019/04/05 Friday - 11:22
題名:
ntp-4.2.6p5-15.0.1.AXS4
影響のあるチャネル:
Asianux Server 4 for x86_64
Asianux Server 4 for x86
Severity:
Low
Description:
以下項目について対処しました。
[Security Fix]
- NTPのntpqとntpdcには、IPv4かIPv6のコマンドラインパラメーターの引数として
渡される長い文字列を通じて、攻撃者にコード実行や権限昇格を許してしまうバッファオー
バーフローの脆弱性があります。(CVE-2018-12327)
一部CVEの翻訳文はJVNからの引用になります。
http://jvndb.jvn.jp/
解決策:
Update packages.
CVE:
CVE-2018-12327
Stack-based buffer overflow in ntpq and ntpdc of NTP version 4.2.8p11 allows an attacker to achieve code execution or escalate to higher privileges via a long string as the argument for an IPv4 or IPv6 command-line parameter. NOTE: It is unclear whether there are any common situations in which ntpq or ntpdc is used with a command line from an untrusted source.
Stack-based buffer overflow in ntpq and ntpdc of NTP version 4.2.8p11 allows an attacker to achieve code execution or escalate to higher privileges via a long string as the argument for an IPv4 or IPv6 command-line parameter. NOTE: It is unclear whether there are any common situations in which ntpq or ntpdc is used with a command line from an untrusted source.
追加情報:
N/A
ダウンロード:
SRPMS
- ntp-4.2.6p5-15.0.1.AXS4.src.rpm
MD5: b3f33fbc199d4dee3202b17375ed30b2
SHA-256: df73856d6eb3bebb20c104bff977e4c17c36b0a9c23fb06e50d90d0157dfc5ec
Size: 4.12 MB
Asianux Server 4 for x86
- ntp-4.2.6p5-15.0.1.AXS4.i686.rpm
MD5: 45126d1f99077563518de38fec350ad3
SHA-256: a80316d8a1cefaacd8d66a3eb0f236889dcf1e82f4a6010edde1884a1ee263fd
Size: 593.22 kB - ntpdate-4.2.6p5-15.0.1.AXS4.i686.rpm
MD5: 5ca6353fc343b6c96309d0a058998c5d
SHA-256: cde8f38e5cc01ae902ba631d3a7be2b6ca4c53f3c4c22c5ab5836cc090a74030
Size: 77.97 kB
Asianux Server 4 for x86_64
- ntp-4.2.6p5-15.0.1.AXS4.x86_64.rpm
MD5: 5cc8bb68d3f8f8feb26dd7ce370f12a6
SHA-256: 46ae221d10b41b8c5a7d1729102148d6debe5216d953f56d3038bbb3fbc87c4f
Size: 599.09 kB - ntpdate-4.2.6p5-15.0.1.AXS4.x86_64.rpm
MD5: ac154bf32d141eb3ba5cb4eef3f6e756
SHA-256: 27a09085b993ebd0acfab353d0efcc3dc8909116a1feabe761174c1fc7d5a9b3
Size: 78.07 kB