shield Security update for ntp
SUSE-SLE-SAP-12-SP2-2020-1805


This update for ntp fixes the following issues: ntp was updated to 4.2.8p15 - CVE-2020-11868: Fixed an issue which a server mode packet with spoofed source address frequently send to the client ntpd could have caused denial of service (bsc#1169740). - CVE-2018-8956: Fixed an issue which could have allowed remote attackers to prevent a broadcast client from synchronizing its clock with a broadcast NTP server via spoofed mode 3 and mode 5 packets (bsc#1171355). - CVE-2020-13817: Fixed an issue which an off-path attacker with the ability to query time from victim's ntpd instance could have modified the victim's clock by a limited amount (bsc#1172651). - CVE-2020-15025: Fixed an issue which remote attacker could have caused denial of service by consuming the memory when a CMAC key was used andassociated with a CMAC algorithm in the ntp.keys (bsc#1173334).


cloud_download Downloads

SUSE Linux Enterprise Server for SAP Applications 12.2 ppc64le
  • Packages
    ntp
    Network Time Protocol daemon (version 4)
    4.2.8p15-88.1
    lock rpm
    lock src
    ntp-doc
    Additional Package Documentation for ntp
    4.2.8p15-88.1
    lock rpm
SUSE Linux Enterprise Server for SAP Applications 12.2 x86_64
  • Packages
    ntp
    Network Time Protocol daemon (version 4)
    4.2.8p15-88.1
    lock rpm
    lock src
    ntp-doc
    Additional Package Documentation for ntp
    4.2.8p15-88.1
    lock rpm