CVE-2017-6462

Priority
Negligible
Description
Buffer overflow in the legacy Datum Programmable Time Server (DPTS)
refclock driver in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local
users to have unspecified impact via a crafted /dev/datum device.
References
Bugs
Package
Source: ntp (LP Ubuntu Debian)
Upstream:needs-triage
Ubuntu 17.10 (Artful Aardvark):not-affected (1:4.2.8p10+dfsg-5ubuntu1)
Ubuntu 12.04 ESM (Precise Pangolin):needed
Ubuntu 14.04 LTS (Trusty Tahr):released (1:4.2.6.p5+dfsg-3ubuntu2.14.04.11)
Ubuntu Core 15.04:DNE
Ubuntu 16.04 LTS (Xenial Xerus):released (1:4.2.8p4+dfsg-3ubuntu5.5)
Ubuntu 17.04 (Zesty Zapus):released (1:4.2.8p9+dfsg-2ubuntu1.1)
Patches:
Upstream:http://bk1.ntp.org/ntp-stable/?PAGE=cset&REV=58a0592bal7oYBqUMCqId4WgiuiOqw
More Information

Updated: 2017-08-11 23:26:07 UTC (commit 13081)