History log of /freebsd-current/contrib/ntp/ntpd/ntp_crypto.c
Revision Date Author Comments
(<<< Hide modified files)
(Show modified files >>>)
# f5f40dd6 26-May-2024 Cy Schubert <cy@FreeBSD.org>

ntp: Vendor import of ntp-4.2.8p18

MFC: 3 days

Merge commit '1f833b3fc9968c3dd7ed79ccf0525ebf16c891ad' into main


# a466cc55 01-Jun-2023 Cy Schubert <cy@FreeBSD.org>

ntp: import ntp-4.2.8p16

Security: NtpBUg3767, NtpBug3808, NtpBug3807 (CVE-2023-26555)
MFC after: immediately


# 052d159a 07-Mar-2019 Cy Schubert <cy@FreeBSD.org>

MFV r344878:

4.2.8p12 --> 4.2.8p13

MFC after: immediately
Security: CVE-2019-8936
VuXML: c2576e14-36e2-11e9-9eda-206a8a720317
Obtained from: nwtime.org


# 09100258 28-Feb-2018 Xin LI <delphij@FreeBSD.org>

MFV r330102: ntp 4.2.8p11


# f0574f5c 23-Mar-2017 Xin LI <delphij@FreeBSD.org>

MFV r315791: ntp 4.2.8p10.


# f391d6bc 22-Nov-2016 Xin LI <delphij@FreeBSD.org>

MFV r308954:

ntp 4.2.8p9.

Approved by: so


# 68ba7e87 22-Jan-2016 Xin LI <delphij@FreeBSD.org>

MFV r294491: ntp 4.2.8p6.

Security: CVE-2015-7973, CVE-2015-7974, CVE-2015-7975
Security: CVE-2015-7976, CVE-2015-7977, CVE-2015-7978
Security: CVE-2015-7979, CVE-2015-8138, CVE-2015-8139
Security: CVE-2015-8140, CVE-2015-8158
With hat: so


# 3311ff84 08-Jan-2016 Xin LI <delphij@FreeBSD.org>

MFV r293415:

ntp 4.2.8p5

Reviewed by: cy, roberto
Relnotes: yes
Differential Revision: https://reviews.freebsd.org/D4828


# 9034852c 22-Oct-2015 Gleb Smirnoff <glebius@FreeBSD.org>

MFV ntp-4.2.8p4 (r289715)

Security: VuXML: c4a18a12-77fc-11e5-a687-206a8a720317
Security: CVE-2015-7871
Security: CVE-2015-7855
Security: CVE-2015-7854
Security: CVE-2015-7853
Security: CVE-2015-7852
Security: CVE-2015-7851
Security: CVE-2015-7850
Security: CVE-2015-7849
Security: CVE-2015-7848
Security: CVE-2015-7701
Security: CVE-2015-7703
Security: CVE-2015-7704, CVE-2015-7705
Security: CVE-2015-7691, CVE-2015-7692, CVE-2015-7702
Security: http://support.ntp.org/bin/view/Main/SecurityNotice#October_2015_NTP_Security_Vulner
Sponsored by: Nginx, Inc.


# 276da39a 05-Jul-2015 Cy Schubert <cy@FreeBSD.org>

MFV ntp-4.2.8p3 (r284990).

Approved by: roberto, delphij
Security: VuXML: 0d0f3050-1f69-11e5-9ba9-d050996490d0
Security: http://bugs.ntp.org/show_bug.cgi?id=2853
Security: https://www.kb.cert.org/vuls/id/668167
Security: http://support.ntp.org/bin/view/Main/SecurityNotice#June_2015_NTP_Security_Vulnerabi


# a25439b6 03-May-2015 Cy Schubert <cy@FreeBSD.org>

MFV ntp 4.2.8p2 (r281348)

Reviewed by: delphij (suggested MFC)
Approved by: roberto
Security: CVE-2015-1798, CVE-2015-1799
Security: VuXML ebd84c96-dd7e-11e4-854e-3c970e169bc2
MFC after: 1 month


# 21c09643 03-Apr-2015 Cy Schubert <cy@FreeBSD.org>

Fix merge error.

Submitted by: jkim

# 2b15cb3d 30-Mar-2015 Cy Schubert <cy@FreeBSD.org>

MFV ntp 4.2.8p1 (r258945, r275970, r276091, r276092, r276093, r278284)

Thanks to roberto for providing pointers to wedge this into HEAD.

Approved by: roberto


# 2f834a0b 22-Dec-2014 Xin LI <delphij@FreeBSD.org>

Fix multiple ntp vulnerabilities.

Reviewed by: roberto (earlier revision), philip
Security: CVE-2014-9293, CVE-2014-9294
Security: CVE-2014-9295, CVE-2014-9296
Security: FreeBSD-SA-14:31.ntp

Differential Revision: https://reviews.freebsd.org/D1343

# eb6d21b4 15-Dec-2009 Ollivier Robert <roberto@FreeBSD.org>

Merge 4.2.4p8 into contrib (r200452 & r200454).

Subversion is being difficult here so take a hammer and get it in.

MFC after: 2 weeks
Security: CVE-2009-3563


# 9a1bde18 10-Jun-2009 Colin Percival <cperciva@FreeBSD.org>

Prevent integer overflow in direct pipe write code from circumventing
virtual-to-physical page lookups. [09:09]

Add missing permissions check for SIOCSIFINFO_IN6 ioctl. [09:10]

Fix buffer overflow in "autokey" negotiation in ntpd(8). [09:11]

Approved by: so (cperciva)
Approved by: re (not really, but SVN wants this...)
Security: FreeBSD-SA-09:09.pipe
Security: FreeBSD-SA-09:10.ipv6
Security: FreeBSD-SA-09:11.ntpd

# 2568138f 13-Jan-2009 Simon L. B. Nielsen <simon@FreeBSD.org>

Correct ntpd(8) cryptographic signature bypass [SA-09:04].

Correct BIND DNSSEC incorrect checks for malformed signatures
[SA-09:04].

Security: FreeBSD-SA-09:03.ntpd
Security: FreeBSD-SA-09:04.bind
Obtained from: ISC [SA-09:04]
Approved by: so (simon)

# ea906c41 22-Aug-2008 Ollivier Robert <roberto@FreeBSD.org>

Merge ntpd & friends 4.2.4p5 from vendor/ntp/dist into head. Next commit
will update usr.sbin/ntp to match this.

MFC after: 2 weeks


# cce65f43 17-Aug-2008 Ollivier Robert <roberto@FreeBSD.org>

Flatten the dist and various 4.n.n trees in preparation of future ntp imports.

# 9c2daa00 20-Jul-2004 Ollivier Robert <roberto@FreeBSD.org>

Virgin import of ntpd 4.2.0

# ce265a54 29-Oct-2002 Ollivier Robert <roberto@FreeBSD.org>

Virgin import of ntpd 4.1.1a

# 224ba2bd 29-Aug-2001 Ollivier Robert <roberto@FreeBSD.org>

Virgin import of ntpd 4.1.0

# a466cc55 01-Jun-2023 Cy Schubert <cy@FreeBSD.org>

ntp: import ntp-4.2.8p16

Security: NtpBUg3767, NtpBug3808, NtpBug3807 (CVE-2023-26555)
MFC after: immediately


# 052d159a 07-Mar-2019 Cy Schubert <cy@FreeBSD.org>

MFV r344878:

4.2.8p12 --> 4.2.8p13

MFC after: immediately
Security: CVE-2019-8936
VuXML: c2576e14-36e2-11e9-9eda-206a8a720317
Obtained from: nwtime.org


# 09100258 28-Feb-2018 Xin LI <delphij@FreeBSD.org>

MFV r330102: ntp 4.2.8p11


# f0574f5c 23-Mar-2017 Xin LI <delphij@FreeBSD.org>

MFV r315791: ntp 4.2.8p10.


# f391d6bc 22-Nov-2016 Xin LI <delphij@FreeBSD.org>

MFV r308954:

ntp 4.2.8p9.

Approved by: so


# 68ba7e87 22-Jan-2016 Xin LI <delphij@FreeBSD.org>

MFV r294491: ntp 4.2.8p6.

Security: CVE-2015-7973, CVE-2015-7974, CVE-2015-7975
Security: CVE-2015-7976, CVE-2015-7977, CVE-2015-7978
Security: CVE-2015-7979, CVE-2015-8138, CVE-2015-8139
Security: CVE-2015-8140, CVE-2015-8158
With hat: so


# 3311ff84 08-Jan-2016 Xin LI <delphij@FreeBSD.org>

MFV r293415:

ntp 4.2.8p5

Reviewed by: cy, roberto
Relnotes: yes
Differential Revision: https://reviews.freebsd.org/D4828


# 9034852c 22-Oct-2015 Gleb Smirnoff <glebius@FreeBSD.org>

MFV ntp-4.2.8p4 (r289715)

Security: VuXML: c4a18a12-77fc-11e5-a687-206a8a720317
Security: CVE-2015-7871
Security: CVE-2015-7855
Security: CVE-2015-7854
Security: CVE-2015-7853
Security: CVE-2015-7852
Security: CVE-2015-7851
Security: CVE-2015-7850
Security: CVE-2015-7849
Security: CVE-2015-7848
Security: CVE-2015-7701
Security: CVE-2015-7703
Security: CVE-2015-7704, CVE-2015-7705
Security: CVE-2015-7691, CVE-2015-7692, CVE-2015-7702
Security: http://support.ntp.org/bin/view/Main/SecurityNotice#October_2015_NTP_Security_Vulner
Sponsored by: Nginx, Inc.


# 276da39a 05-Jul-2015 Cy Schubert <cy@FreeBSD.org>

MFV ntp-4.2.8p3 (r284990).

Approved by: roberto, delphij
Security: VuXML: 0d0f3050-1f69-11e5-9ba9-d050996490d0
Security: http://bugs.ntp.org/show_bug.cgi?id=2853
Security: https://www.kb.cert.org/vuls/id/668167
Security: http://support.ntp.org/bin/view/Main/SecurityNotice#June_2015_NTP_Security_Vulnerabi


# a25439b6 03-May-2015 Cy Schubert <cy@FreeBSD.org>

MFV ntp 4.2.8p2 (r281348)

Reviewed by: delphij (suggested MFC)
Approved by: roberto
Security: CVE-2015-1798, CVE-2015-1799
Security: VuXML ebd84c96-dd7e-11e4-854e-3c970e169bc2
MFC after: 1 month


# 21c09643 03-Apr-2015 Cy Schubert <cy@FreeBSD.org>

Fix merge error.

Submitted by: jkim

# 2b15cb3d 30-Mar-2015 Cy Schubert <cy@FreeBSD.org>

MFV ntp 4.2.8p1 (r258945, r275970, r276091, r276092, r276093, r278284)

Thanks to roberto for providing pointers to wedge this into HEAD.

Approved by: roberto


# 2f834a0b 22-Dec-2014 Xin LI <delphij@FreeBSD.org>

Fix multiple ntp vulnerabilities.

Reviewed by: roberto (earlier revision), philip
Security: CVE-2014-9293, CVE-2014-9294
Security: CVE-2014-9295, CVE-2014-9296
Security: FreeBSD-SA-14:31.ntp

Differential Revision: https://reviews.freebsd.org/D1343

# eb6d21b4 15-Dec-2009 Ollivier Robert <roberto@FreeBSD.org>

Merge 4.2.4p8 into contrib (r200452 & r200454).

Subversion is being difficult here so take a hammer and get it in.

MFC after: 2 weeks
Security: CVE-2009-3563


# 9a1bde18 10-Jun-2009 Colin Percival <cperciva@FreeBSD.org>

Prevent integer overflow in direct pipe write code from circumventing
virtual-to-physical page lookups. [09:09]

Add missing permissions check for SIOCSIFINFO_IN6 ioctl. [09:10]

Fix buffer overflow in "autokey" negotiation in ntpd(8). [09:11]

Approved by: so (cperciva)
Approved by: re (not really, but SVN wants this...)
Security: FreeBSD-SA-09:09.pipe
Security: FreeBSD-SA-09:10.ipv6
Security: FreeBSD-SA-09:11.ntpd

# 2568138f 13-Jan-2009 Simon L. B. Nielsen <simon@FreeBSD.org>

Correct ntpd(8) cryptographic signature bypass [SA-09:04].

Correct BIND DNSSEC incorrect checks for malformed signatures
[SA-09:04].

Security: FreeBSD-SA-09:03.ntpd
Security: FreeBSD-SA-09:04.bind
Obtained from: ISC [SA-09:04]
Approved by: so (simon)

# ea906c41 22-Aug-2008 Ollivier Robert <roberto@FreeBSD.org>

Merge ntpd & friends 4.2.4p5 from vendor/ntp/dist into head. Next commit
will update usr.sbin/ntp to match this.

MFC after: 2 weeks


# cce65f43 17-Aug-2008 Ollivier Robert <roberto@FreeBSD.org>

Flatten the dist and various 4.n.n trees in preparation of future ntp imports.

# 9c2daa00 20-Jul-2004 Ollivier Robert <roberto@FreeBSD.org>

Virgin import of ntpd 4.2.0

# ce265a54 29-Oct-2002 Ollivier Robert <roberto@FreeBSD.org>

Virgin import of ntpd 4.1.1a

# 224ba2bd 29-Aug-2001 Ollivier Robert <roberto@FreeBSD.org>

Virgin import of ntpd 4.1.0

# 21c09643 03-Apr-2015 Cy Schubert <cy@FreeBSD.org>

Fix merge error.

Submitted by: jkim


# 2f834a0b 22-Dec-2014 Xin LI <delphij@FreeBSD.org>

Fix multiple ntp vulnerabilities.

Reviewed by: roberto (earlier revision), philip
Security: CVE-2014-9293, CVE-2014-9294
Security: CVE-2014-9295, CVE-2014-9296
Security: FreeBSD-SA-14:31.ntp

Differential Revision: https://reviews.freebsd.org/D1343


# a7d5f7eb 19-Oct-2010 Jamie Gritton <jamie@FreeBSD.org>

A new jail(8) with a configuration file, to replace the work currently done
by /etc/rc.d/jail.


# fe0506d7 09-Mar-2010 Marcel Moolenaar <marcel@FreeBSD.org>

Create the altix project branch. The altix project will add support
for the SGI Altix 350 to FreeBSD/ia64. The hardware used for porting
is a two-module system, consisting of a base compute module and a
CPU expansion module. SGI's NUMAFlex architecture can be an excellent
platform to test CPU affinity and NUMA-aware features in FreeBSD.


# 9a1bde18 10-Jun-2009 Colin Percival <cperciva@FreeBSD.org>

Prevent integer overflow in direct pipe write code from circumventing
virtual-to-physical page lookups. [09:09]

Add missing permissions check for SIOCSIFINFO_IN6 ioctl. [09:10]

Fix buffer overflow in "autokey" negotiation in ntpd(8). [09:11]

Approved by: so (cperciva)
Approved by: re (not really, but SVN wants this...)
Security: FreeBSD-SA-09:09.pipe
Security: FreeBSD-SA-09:10.ipv6
Security: FreeBSD-SA-09:11.ntpd


# 2568138f 13-Jan-2009 Simon L. B. Nielsen <simon@FreeBSD.org>

Correct ntpd(8) cryptographic signature bypass [SA-09:04].

Correct BIND DNSSEC incorrect checks for malformed signatures
[SA-09:04].

Security: FreeBSD-SA-09:03.ntpd
Security: FreeBSD-SA-09:04.bind
Obtained from: ISC [SA-09:04]
Approved by: so (simon)


# d7f03759 19-Oct-2008 Ulf Lilleengen <lulf@FreeBSD.org>

- Import the HEAD csup code which is the basis for the cvsmode work.


# 9c2daa00 20-Jul-2004 Ollivier Robert <roberto@FreeBSD.org>

Virgin import of ntpd 4.2.0


# ce265a54 29-Oct-2002 Ollivier Robert <roberto@FreeBSD.org>

Virgin import of ntpd 4.1.1a


# 224ba2bd 29-Aug-2001 Ollivier Robert <roberto@FreeBSD.org>

Virgin import of ntpd 4.1.0