NTP: Multiple vulnerablities Multiple vulnerabilities have been found in NTP, the worst of which could lead to arbitrary code execution. ntp 2015-09-24 2015-09-24 545836 553682 remote 4.2.8_p3 4.2.8_p3

NTP contains software for the Network Time Protocol.

Multiple vulnerabilities have been discovered in NTP. Please review the CVE identifiers referenced below for details.

A remote attacker could possibly execute arbitrary code with the privileges of the process, or cause a Denial of Service condition.

There is no known workaround at this time.

All NTP users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=net-misc/ntp-4.2.8_p3"
CVE-2015-1798 CVE-2015-1799 CVE-2015-5146 BlueKnight mrueg