[Oraclevm-errata] OVMSA-2018-0290 Low: Oracle VM 3.3 ntp security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Thu Dec 20 08:51:19 PST 2018

Oracle VM Security Advisory OVMSA-2018-0290

The following updated rpms for Oracle VM 3.3 have been uploaded to the 
Unbreakable Linux Network:



Description of changes:

- add disable monitor to default ntp.conf [CVE-2013-5211]

- fix buffer overflow in parsing of address in ntpq and ntpdc 

- fix CVE-2016-7429 patch to work correctly on multicast client (#1422973)

- fix buffer overflow in datum refclock driver (CVE-2017-6462)
- fix crash with invalid unpeer command (CVE-2017-6463)
- fix potential crash with invalid server command (CVE-2017-6464)

More information about the Oraclevm-errata mailing list