[Secure-testing-commits] r33427 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Apr 8 05:29:52 UTC 2015


Author: carnil
Date: 2015-04-08 05:29:52 +0000 (Wed, 08 Apr 2015)
New Revision: 33427

Modified:
   data/CVE/list
Log:
Add as well direct references for ntp upstream notice

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-08 05:23:05 UTC (rev 33426)
+++ data/CVE/list	2015-04-08 05:29:52 UTC (rev 33427)
@@ -2984,10 +2984,12 @@
 	RESERVED
 	- ntp <unfixed> (bug #782095)
 	NOTE: http://bugs.ntp.org/show_bug.cgi?id=2781
+	NOTE: http://support.ntp.org/bin/view/Main/SecurityNotice#Authentication_doesn_t_protect_s
 CVE-2015-1798 [ntpd accepts unauthenticated packets with symmetric key crypto]
 	RESERVED
 	- ntp <unfixed> (bug #782095)
 	NOTE: http://bugs.ntp.org/show_bug.cgi?id=2779
+	NOTE: http://support.ntp.org/bin/view/Main/SecurityNotice#ntpd_accepts_unauthenticated_pac
 CVE-2015-1797
 	RESERVED
 CVE-2015-1796 [PKIX Trust Engines Exhibit Critical Flaw In Trusted Names Evaluation]




More information about the Secure-testing-commits mailing list