[Buildroot] [PATCH] dovecot: bump version to 2.2.29 (security)

Bernd Kuhls bernd.kuhls at t-online.de
Tue Apr 11 16:34:37 UTC 2017


Am Tue, 11 Apr 2017 11:01:41 +0100 schrieb Vicente Olivert Riera:

> Security fix:
> 
>   passdb/userdb dict: Don't double-expand %variables in keys. If dict
>   was used as the authentication passdb, using specially crafted
>   %variables in the username could be used to cause DoS (CVE-2017-2669)
> 
> Full ChangeLog:
> 
>   https://www.dovecot.org/list/dovecot-news/2017-April/000341.html

Acked-by: Bernd Kuhls <bernd.kuhls at t-online.de>




More information about the buildroot mailing list