Marcus Rückert 2019-08-29 10:35:16 +00:00 committed by Git OBS Bridge
parent 2cb5006e53
commit 7db7add968

View File

@ -5,12 +5,12 @@ Wed Aug 28 16:57:12 UTC 2019 - Marcus Rueckert <mrueckert@suse.de>
* CVE-2019-11500: IMAP protocol parser does not properly handle * CVE-2019-11500: IMAP protocol parser does not properly handle
NUL byte when scanning data in quoted strings, leading to out NUL byte when scanning data in quoted strings, leading to out
of bounds heap memory writes. Found by Nick Roessler and Rafi of bounds heap memory writes. Found by Nick Roessler and Rafi
Rubin. Rubin. (boo#1145559)
- update pigeonhole to 0.5.7.2 - update pigeonhole to 0.5.7.2
* CVE-2019-11500: ManageSieve protocol parser does not properly * CVE-2019-11500: ManageSieve protocol parser does not properly
handle NUL byte when scanning data in quoted strings, leading handle NUL byte when scanning data in quoted strings, leading
to out of bounds heap memory writes. Found by Nick Roessler and to out of bounds heap memory writes. Found by Nick Roessler and
Rafi Rubin. Rafi Rubin. (boo#1145559)
- refreshed patches to apply cleanly again: - refreshed patches to apply cleanly again:
dovecot-2.3.0-better_ssl_defaults.patch dovecot-2.3.0-better_ssl_defaults.patch
dovecot-2.3.0-dont_use_etc_ssl_certs.patch dovecot-2.3.0-dont_use_etc_ssl_certs.patch