From: Harlan Stenn Date: Thu, 14 Jan 2016 10:40:38 +0000 (+0000) Subject: Merge pogo.udel.edu:../perlinger/ntp-stable-2891 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=ce804893817a51e1f9102c1eb09fc7fc7db71024;p=thirdparty%2Fntp.git Merge pogo.udel.edu:../perlinger/ntp-stable-2891 into psp-at1.ntp.org:/a/local/amd/amd.stage/thump2-g3/export/ntp/home/stenn/ntp-stable-p6+ bk: 56977b26eSVndZb5o5zjX2H0Rh6ejw --- ce804893817a51e1f9102c1eb09fc7fc7db71024 diff --cc ChangeLog index ab145b43d,eec4f89bc..64108981f --- a/ChangeLog +++ b/ChangeLog @@@ -1,5 -1,23 +1,24 @@@ --- + * [Sec 2935] Deja Vu: Replay attack on authenticated broadcast mode. HStenn. + * [Sec 2937] ntpq: nextvar() missing length check. perlinger@ntp.org + * [Sec 2938] ntpq saveconfig command allows dangerous characters + in filenames. perlinger@ntp.org + * [Sec 2939] reslist NULL pointer dereference. perlinger@ntp.org + * [Sec 2940] Stack exhaustion in recursive traversal of restriction + list. perlinger@ntp.org + * [Sec 2945] Zero Origin Timestamp Bypass. perlinger@ntp.org + * [Sec 2948] Potential Infinite Loop in ntpq ( and ntpdc) perlinger@ntp.org + * [Bug 2772] adj_systime overflows tv_usec. perlinger@ntp.org + * [Bug 2814] msyslog deadlock when signaled. perlinger@ntp.org + - applied patch by shenpeng11@huawei.com with minor adjustments + * [Bug 2882] Look at ntp_request.c:list_peers_sum(). perlinger@ntp.org ++* [Bug 2891] Deadlock in deferred DNS lookup framework. perlinger@ntp.org + * Make leapsec_query debug messages less verbose. Harlan Stenn. + + --- + (4.2.8p5) 2016/01/07 Released by Harlan Stenn + * [Sec 2956] small-step/big-step. Close the panic gate earlier. HStenn. * CID 1339955: Free allocated memory in caljulian test. HStenn. * CID 1339962: Explicitly initialize variable in caljulian test. HStenn. @@@ -17,12 -35,9 +36,10 @@@ * CID 1341681: Nits in sntp/tests/keyFile.c. HStenn. * CID 1341682: Nit in libntp/authreadkeys.c. HStenn. * CID 1341684: Nit in tests/ntpd/t-ntp_signd.c. HStenn. - * [Bug 2814] msyslog deadlock when signaled. perlinger@ntp.org - - applied patch by shenpeng11@huawei.com with minor adjustments * [Bug 2829] Look at pipe_fds in ntpd.c (did so. perlinger@ntp.org) * [Bug 2887] stratum -1 config results as showing value 99 + - fudge stratum should only accept values [0..16]. perlinger@ntp.org + - fudge stratum only accepts values [0..16]. perlinger@ntp.org - * [Bug 2891] Deadlock in deferred DNS lookup framework. perlinger@ntp.org * [Bug 2932] Update leapsecond file info in miscopt.html. CWoodbury, HStenn. * [Bug 2934] tests/ntpd/t-ntp_scanner.c has a magic constant wired in. HMurray * [Bug 2944] errno is not preserved properly in ntpdate after sendto call.