2014 m. gruodžio 23 d., antradienis

APPLE-SA-2014-12-22-1 OS X NTP Security Update

APPLE-SA-2014-12-22-1 OS X NTP Security Update

OS X NTP Security Update is now available and addresses the
following:

ntpd
Available for:  OS X Mountain Lion v10.8.5, OS X Mavericks v10.9.5,
OS X Yosemite v10.10.1
Impact:  A remote attacker may be able to execute arbitrary code
Description:  Several issues existed in ntpd that would have allowed
an attacker to trigger buffer overflows. These issues were addressed
through improved error checking.

To verify the ntpd version, type the following command in Terminal:
what /usr/sbin/ntpd. This update includes the following versions:

Mountain Lion: ntp-77.1.1
Mavericks: ntp-88.1.1
Yosemite: ntp-92.5.1

CVE-ID
CVE-2014-9295 : Stephen Roettger of the Google Security Team

Information will also be posted to the Apple Security Updates
web site: http://support.apple.com/kb/HT1222

This message is signed with Apple's Product Security PGP key,
and details are available at:
https://www.apple.com/support/security/pgp/

Komentarų nėra:

Rašyti komentarą