/[advisories]/24588.adv
ViewVC logotype

Annotation of /24588.adv

Parent Directory Parent Directory | Revision Log Revision Log


Revision 8443 - (hide annotations) (download)
Wed Apr 10 19:52:01 2019 UTC (5 years ago) by davidwhodgins
File size: 559 byte(s)
Adding security advisory for dovecot mga#24588
1 davidwhodgins 8443 type: security
2     subject: Updated dovecot packages fix security vulnerability
3     CVE:
4     - CVE-2019-7524
5     src:
6     6:
7     core:
8     - dovecot-2.2.36.3-1.mga6
9     description: |
10     CVE-2019-7524: Missing input buffer size validation leads into arbitrary
11     buffer overflow when reading fts or pop3 uidl header from Dovecot index.
12     Exploiting this requires direct write access to the index files.
13     references:
14     - https://bugs.mageia.org/show_bug.cgi?id=24588
15     - https://nvd.nist.gov/vuln/detail/CVE-2019-7524
16     - https://www.dovecot.org/list/dovecot-news/2019-March/000402.html

  ViewVC Help
Powered by ViewVC 1.1.30