Go to file
Gustavo Zacarias ee18216d47 ntp: security bump to version 4.2.8p7
Fixes:

CVE-2016-1551 - Refclock impersonation vulnerability, AKA:
refclock-peering

CVE-2016-1549 - Sybil vulnerability: ephemeral association attack, AKA:
ntp-sybil - MITIGATION ONLY

CVE-2016-2516 - Duplicate IPs on unconfig directives will cause an
assertion botch

CVE-2016-2517 - Remote configuration trustedkey/requestkey values are not
properly validated

CVE-2016-2518 - Crafted addpeer with hmode > 7 causes array wraparound
with MATCH_ASSOC

CVE-2016-2519 - ctl_getitem() return value not always checked

CVE-2016-1547 - Validate crypto-NAKs, AKA: nak-dos

CVE-2016-1548 - Interleave-pivot - MITIGATION ONLY

CVE-2015-7704 - KoD fix: peer associations were broken by the fix for
NtpBug2901, AKA: Symmetric active/passive mode is broken

CVE-2015-8138 - Zero Origin Timestamp Bypass, AKA: Additional KoD Checks

CVE-2016-1550 - Improve NTP security against buffer comparison timing
attacks, authdecrypt-timing, AKA: authdecrypt-timing

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
2016-05-02 17:24:10 +02:00
arch toolchain: add coldfire support 2016-04-30 18:50:46 +02:00
board board: add qemu coldfire support 2016-04-30 18:50:46 +02:00
boot syslinux: fix boot hang when host-gcc is 5.3 2016-05-01 22:22:11 +02:00
configs board: add qemu coldfire support 2016-04-30 18:50:46 +02:00
docs Revert "core: add the possibility to provide help for custom rules" 2016-04-17 10:55:37 +02:00
fs fs/common: generate users before setting permissions 2016-02-01 07:25:36 +01:00
linux linux: properly install all images in the initramfs case 2016-04-25 21:40:47 +02:00
package ntp: security bump to version 4.2.8p7 2016-05-02 17:24:10 +02:00
support support/scripts/check-host-rpath: also check HOST_DIR/{bin, sbin} 2016-04-21 22:17:36 +02:00
system skeleton: Recreate /var/run symlink 2016-02-11 23:20:38 +01:00
toolchain toolchain-external: remove Sourcery PowerPC toolchains 2016-05-01 15:05:34 +02:00
.defconfig arch/x86: remove support for i386 2016-04-18 23:38:34 +02:00
.gitignore update gitignore 2013-05-04 12:41:55 +02:00
CHANGES Update for 2016.02 2016-03-01 21:47:30 +01:00
Config.in Config.in: add symbols for BR2_HOST_GCC_AT_LEAST_4_6 2016-03-20 14:55:27 +01:00
Config.in.legacy toolchain-external: remove Sourcery PowerPC toolchains 2016-05-01 15:05:34 +02:00
COPYING COPYING: add exception about patch licensing 2016-02-26 19:50:13 +01:00
Makefile purge-locales: Handle empty locale directories better 2016-04-28 23:48:09 +02:00
Makefile.legacy Makefile.legacy: fix recursive invocation with BUILDROOT_DL_DIR and _CONFIG 2014-02-11 08:14:57 +01:00
README README: add reference to submitting-patches 2016-02-01 19:16:08 +01:00

Buildroot is a simple, efficient and easy-to-use tool to generate embedded
Linux systems through cross-compilation.

The documentation can be found in docs/manual. You can generate a text
document with 'make manual-text' and read output/docs/manual/manual.text.
Online documentation can be found at http://buildroot.org/docs.html

To build and use the buildroot stuff, do the following:

1) run 'make menuconfig'
2) select the target architecture and the packages you wish to compile
3) run 'make'
4) wait while it compiles
5) find the kernel, bootloader, root filesystem, etc. in output/images

You do not need to be root to build or run buildroot.  Have fun!

Buildroot comes with a basic configuration for a number of boards. Run
'make list-defconfigs' to view the list of provided configurations.

Please feed suggestions, bug reports, insults, and bribes back to the
buildroot mailing list: buildroot@buildroot.org
You can also find us on #buildroot on Freenode IRC.

If you would like to contribute patches, please read
https://buildroot.org/manual.html#submitting-patches