USN-5175-1: NTP vulnerability
6 December 2021
A security issue was fixed in NTP.
Releases
Packages
- ntp - Network Time Protocol daemon and utility programs
Details
It was discovered that ntpd incorrectly handled memory when CMAC keys
were used. A remote attacker could possibly use this issue to cause ntpd to
crash resulting in a denial of service.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 20.04
-
ntp
-
1:4.2.8p12+dfsg-3ubuntu4.20.04.1+esm1
Available with Ubuntu Pro
After a standard system update you need to restart the ntpd service
to make all the necessary changes.