c70acd27d4
Accepting request 950732 from home:dimstar:Factory
...
- Fix dovecot-2.3.0-dont_use_etc_ssl_certs.patch: Align the
certificate path/filenames to /etc/ssl/private/*.crt, which
happens to match what the patch also does for mkert.sh
(boo#1193909).
- Rebase dovecot-2.3.0-better_ssl_defaults.patch
OBS-URL: https://build.opensuse.org/request/show/950732
OBS-URL: https://build.opensuse.org/package/show/server:mail/dovecot23?expand=0&rev=101
2022-02-03 12:40:28 +00:00
Peter Varkoly
958249c91d
Accepting request 940830 from home:favogt:branches:server:mail
...
- Update dovecot-2.3.0-dont_use_etc_ssl_certs.patch to also adjust
the path in the 10-ssl.conf example (boo#1193758)
- Rebase dovecot-2.3.0-better_ssl_defaults.patch
OBS-URL: https://build.opensuse.org/request/show/940830
OBS-URL: https://build.opensuse.org/package/show/server:mail/dovecot23?expand=0&rev=100
2021-12-16 08:56:12 +00:00
4aa711e725
Accepting request 901209 from home:stroeder:network
...
- update to 2.3.15 and pigeonhole to 0.5.15:
* security fixes for CVE-2021-29157, CVE-2021-33515, and CVE-2020-28200
FWIW: It seems to work for me on Tumbleweed x64_64.
OBS-URL: https://build.opensuse.org/request/show/901209
OBS-URL: https://build.opensuse.org/package/show/server:mail/dovecot23?expand=0&rev=96
2021-06-21 17:08:49 +00:00
8b548c1efa
Accepting request 779407 from home:dimstar:Factory
...
- Update dovecot-2.3.0-dont_use_etc_ssl_certs.patch: since we
change CERTDIR to /etc/ssl/private, it is rather evil to then err
out claiming /etc/ssl/certs would not exist. The error message
should mention the directory it tested for.
OBS-URL: https://build.opensuse.org/request/show/779407
OBS-URL: https://build.opensuse.org/package/show/server:mail/dovecot23?expand=0&rev=65
2020-02-26 13:41:24 +00:00
2cb5006e53
- update to 2.3.7.2
...
* CVE-2019-11500: IMAP protocol parser does not properly handle
NUL byte when scanning data in quoted strings, leading to out
of bounds heap memory writes. Found by Nick Roessler and Rafi
Rubin.
- update pigeonhole to 0.5.7.2
* CVE-2019-11500: ManageSieve protocol parser does not properly
handle NUL byte when scanning data in quoted strings, leading
to out of bounds heap memory writes. Found by Nick Roessler and
Rafi Rubin.
- refreshed patches to apply cleanly again:
dovecot-2.3.0-better_ssl_defaults.patch
dovecot-2.3.0-dont_use_etc_ssl_certs.patch
OBS-URL: https://build.opensuse.org/package/show/server:mail/dovecot23?expand=0&rev=52
2019-08-28 17:07:06 +00:00
0235820ac5
Accepting request 559675 from home:darix:playground
...
new package of 2.3.0
OBS-URL: https://build.opensuse.org/request/show/559675
OBS-URL: https://build.opensuse.org/package/show/server:mail/dovecot23?expand=0&rev=1
2017-12-24 02:20:56 +00:00