Oval Definition:oval:org.mitre.oval:def:28923
Revision Date:2015-08-17Version:9
Title:RHSA-2009:0046 -- ntp security update (Moderate)
Description:Updated ntp packages to correct a security issue are now available for RedHat Enterprise Linux 4 and 5.This update has been rated as having moderate security impact by the RedHat Security Response Team.The Network Time Protocol (NTP) is used to synchronize a computer's timewith a referenced time source.A flaw was discovered in the way the ntpd daemon checked the return valueof the OpenSSL EVP_VerifyFinal function. On systems using NTPv4authentication, this could lead to an incorrect verification ofcryptographic signatures, allowing time-spoofing attacks. (CVE-2009-0021)
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2009:0046-CentOS 5
CVE-2009-0021
RHSA-2009:0046
Platform(s):CentOS Linux 5
Red Hat Enterprise Linux 4
Red Hat Enterprise Linux 5
Product(s):ntp
Definition Synopsis
  • Red Hat Enterprise Linux 4 release section
  • The operating system installed on the system is Red Hat Enterprise Linux 4
  • AND ntp is earlier than 0:4.2.0.a.20040617-8.el4_7.1
  • Red Hat Enterprise Linux 5 release section
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • AND ntp is earlier than 0:4.2.2p1-9.el5_3.1
  • CentOS Linux 5 release section
  • The operating system installed on the system is CentOS Linux 5.x
  • AND ntp is earlier than 0:4.2.2p1-9.el5.centos.1
  • BACK