From 7db7add96897ee51e8e1c69c4da8d1cba42a698495140f352e4c7403069b877d Mon Sep 17 00:00:00 2001 From: Marcus Rueckert Date: Thu, 29 Aug 2019 10:35:16 +0000 Subject: [PATCH] add bugnumbers OBS-URL: https://build.opensuse.org/package/show/server:mail/dovecot23?expand=0&rev=53 --- dovecot23.changes | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/dovecot23.changes b/dovecot23.changes index 52477b4..cbbe857 100644 --- a/dovecot23.changes +++ b/dovecot23.changes @@ -5,12 +5,12 @@ Wed Aug 28 16:57:12 UTC 2019 - Marcus Rueckert * CVE-2019-11500: IMAP protocol parser does not properly handle NUL byte when scanning data in quoted strings, leading to out of bounds heap memory writes. Found by Nick Roessler and Rafi - Rubin. + Rubin. (boo#1145559) - update pigeonhole to 0.5.7.2 * CVE-2019-11500: ManageSieve protocol parser does not properly handle NUL byte when scanning data in quoted strings, leading to out of bounds heap memory writes. Found by Nick Roessler and - Rafi Rubin. + Rafi Rubin. (boo#1145559) - refreshed patches to apply cleanly again: dovecot-2.3.0-better_ssl_defaults.patch dovecot-2.3.0-dont_use_etc_ssl_certs.patch