From: Harlan Stenn Date: Wed, 30 Mar 2016 10:35:59 +0000 (+0000) Subject: Merge psp-deb1.ntp.org:/home/stenn/ntp-stable X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=b768bd32f4a507eed2087907f8b5b96788f4d66a;p=thirdparty%2Fntp.git Merge psp-deb1.ntp.org:/home/stenn/ntp-stable into psp-deb1.ntp.org:/home/stenn/ntp-stable-p7 bk: 56fbac0fFDroSKArY5ckcuNptiL6lA --- b768bd32f4a507eed2087907f8b5b96788f4d66a diff --cc ChangeLog index f00f85fcf,4fb749765..b36fb25b9 --- a/ChangeLog +++ b/ChangeLog @@@ -1,17 -1,7 +1,19 @@@ --- +* [Sec 2901] KoD packets must have non-zero transmit timestamps. HStenn. +* [Sec 2936] Skeleton Key: Any system knowing the trusted key can serve + time. Include passive servers in this check. HStenn. +* [Sec 2945] Additional KoD packet checks. HStenn. +* [Sec 3008] Always check the return value of ctl_getitem(). + - initial work by HStenn + - Additional cleanup of ctl_getitem by perlinger@ntp.org +* [Sec 3020] Refclock impersonation. HStenn. +* [Bug 2858] bool support. Use stdbool.h when available. HStenn. +* [Bug 2879] Improve NTP security against timing attacks. perlinger@ntp.org + - integrated patches by Loganaden Velvidron + with some modifications & unit tests + * [Bug 2960] async name resolution fixes for chroot() environments. + Reinhard Max. * [Bug 2994] Systems with HAVE_SIGNALED_IO fail to compile. perlinger@ntp.org * [Bug 2995] Fixes to compile on Windows * [Bug 2999] out-of-bounds access in 'is_safe_filename()'. perlinger@ntp.org