stable

ntpsec-1.2.1-3.fc34

FEDORA-2021-3ffc890685 created by mlichvar 4 years ago for Fedora 34

Update to the latest upstream release, which fixes CVE-2021-22212 (ntpkeygen generates weak keys).

The ntpd daemon will refuse to start if a key impacted by the ntpkeygen bug is detected in the key file. The key needs to be replaced with a new key. A comment following a key in the key file needs to be separated by at least one space or tab character to avoid the detection.

The update also enables support for hardware reference clocks.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2021-3ffc890685

This update has been submitted for testing by mlichvar.

4 years ago

This update's test gating status has been changed to 'ignored'.

4 years ago

This update's test gating status has been changed to 'waiting'.

4 years ago

This update's test gating status has been changed to 'ignored'.

4 years ago

This update has been pushed to testing.

4 years ago

This update has been submitted for stable by bodhi.

4 years ago

This update has been unpushed.

mlichvar edited this update.

New build(s):

  • ntpsec-1.2.1-3.fc34

Removed build(s):

  • ntpsec-1.2.1-1.fc34

Karma has been reset.

4 years ago

This update has been submitted for testing by mlichvar.

4 years ago

This update has been pushed to testing.

4 years ago
User Icon gtjoseph commented & provided feedback 4 years ago
karma

Refclock support is working for at least nmea and shm. I ran ntpkeygen in a loop for about 30 minutes and it didn't generate any bad keys.

BZ#1955859 CVE-2021-22212 ntpsec: ntpkeygen generates weak keys [fedora-34]
BZ#1968273 ntpsec-1_2_1 is available

This update has been submitted for stable by bodhi.

4 years ago

This update has been pushed to stable.

4 years ago

Please log in to add feedback.

Metadata
Type
security
Severity
medium
Karma
1
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
4 years ago
in testing
4 years ago
in stable
4 years ago
modified
4 years ago
BZ#1955859 CVE-2021-22212 ntpsec: ntpkeygen generates weak keys [fedora-34]
0
1
BZ#1968273 ntpsec-1_2_1 is available
0
1

Automated Test Results