* SECURITY UPDATE: stack overflow in ntpd when autokey is enabled - debian/patches/CVE-2009-1252.patch: update ntpd/ntp_crypto.c to use snprintf() with NTP_MAXSTRLEN when writing to statstr. Also defensively adjust ntp_peer.c and ntp_timer.c to do the same. - CVE-2009-1252 * SECURITY UPDATE: stack overflow in ntpq when contacting malicious ntp server - debian/patches/CVE-2009-0159.patch: increase size of buffer in cookedprint() in ntpq/ntpq.c and adjust to use snprintf() - CVE-2009-0159