diff options
author | Vicente Olivert Riera <Vincent.Riera@imgtec.com> | 2017-04-12 16:56:47 +0100 |
---|---|---|
committer | Thomas Petazzoni <thomas.petazzoni@free-electrons.com> | 2017-04-12 21:01:12 +0200 |
commit | a1a1f484a9a47f121c071d345fae4472b56bac81 (patch) | |
tree | c47e7e8b2a9501b3029dbcf8a1f09417ee24c50f /package/linux-headers/Config.in.host | |
parent | efd6d5fd24706d825abae5f2bb39771fce586f09 (diff) | |
download | buildroot-a1a1f484a9a47f121c071d345fae4472b56bac81.tar.gz buildroot-a1a1f484a9a47f121c071d345fae4472b56bac81.zip |
dovecot: bump version to 2.2.29.1 (security)
Security fix:
passdb/userdb dict: Don't double-expand %variables in keys. If dict
was used as the authentication passdb, using specially crafted
%variables in the username could be used to cause DoS (CVE-2017-2669)
Full ChangeLog 2.2.29 (including CVE fix):
https://www.dovecot.org/list/dovecot-news/2017-April/000341.html
Full ChangeLog 2.2.29.1 (some fixes forgotten in the 2.2.29 release):
https://www.dovecot.org/list/dovecot-news/2017-April/000344.html
Signed-off-by: Vicente Olivert Riera <Vincent.Riera@imgtec.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
Diffstat (limited to 'package/linux-headers/Config.in.host')
0 files changed, 0 insertions, 0 deletions