Errata overview
Errata ID 267
Date 2014-12-22
Source package ntp
Fixed in version 4.2.6.p2+dfsg-1.28.201412220827
Description
Multiple issues have been found in the ISC NTP time server:
* An insecure default key could lead to an attacker being able to 
  reconfigure ntpd (CVE-2014-9293)
* ntp-keygen generated weak keys (CVE-2014-9294)
* Multiple buffer overflows (CVE-2014-9295)
* Incorrect error handling in processing NTP packets (CVE-2014-9296)
Additional notes
CVE ID CVE-2014-9293
CVE-2014-9294
CVE-2014-9295
CVE-2014-9296
UCS Bug number #37407