Details
Stack-based buffer overflow in the crypto_recv function in ntp_crypto.c in ntpd in NTP before 4.2.4p7 and 4.2.5 before 4.2.5p74, when OpenSSL and autokey are enabled, allows remote attackers to execute arbitrary code via a crafted packet containing an extension field.Novell Bugzilla entry: 501632 SUSE Security Advisories:
- SUSE-SR:2009:011 , published Tue, 09 Jun 2009 12:00:00 +0000