{"id":"openSUSE-SU-2019:0082-1","summary":"Security update for ntpsec","details":"This update for ntpsec to version 1.1.3 fixes the following issues:\n\nSecurity issues fixed:\n\n- CVE-2019-6442: Fixed a out of bounds write via a malformed config request (boo#1122132)\n- CVE-2019-6443: Fixed a stack-based buffer over-read in the ctl_getitem function (boo#1122144)\n- CVE-2019-6444: Fixed a stack-based buffer over-read in the process_control function (boo#1122134)\n- CVE-2019-6445: Fixed a NULL pointer dereference in the ctl_getitem function (boo#1122131)\n","modified":"2026-03-11T07:32:01.717233Z","published":"2019-03-23T10:49:23Z","related":["CVE-2019-6442","CVE-2019-6443","CVE-2019-6444","CVE-2019-6445"],"upstream":["CVE-2019-6442","CVE-2019-6443","CVE-2019-6444","CVE-2019-6445"],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/577KX4OOBHVFJ6V4EDJ2OFZWCLQDDAG4/#577KX4OOBHVFJ6V4EDJ2OFZWCLQDDAG4"},{"type":"REPORT","url":"https://bugzilla.suse.com/1122131"},{"type":"REPORT","url":"https://bugzilla.suse.com/1122132"},{"type":"REPORT","url":"https://bugzilla.suse.com/1122134"},{"type":"REPORT","url":"https://bugzilla.suse.com/1122144"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-6442"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-6443"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-6444"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-6445"}],"schema_version":"1.7.5"}