/[advisories]/24588.adv
ViewVC logotype

Contents of /24588.adv

Parent Directory Parent Directory | Revision Log Revision Log


Revision 8459 - (show annotations) (download)
Wed Apr 10 20:40:00 2019 UTC (2 months ago) by tmb
File size: 579 byte(s)
MGASA-2019-0141: dovecot-2.2.36.3-1.mga6
1 type: security
2 subject: Updated dovecot packages fix security vulnerability
3 CVE:
4 - CVE-2019-7524
5 src:
6 6:
7 core:
8 - dovecot-2.2.36.3-1.mga6
9 description: |
10 CVE-2019-7524: Missing input buffer size validation leads into arbitrary
11 buffer overflow when reading fts or pop3 uidl header from Dovecot index.
12 Exploiting this requires direct write access to the index files.
13 references:
14 - https://bugs.mageia.org/show_bug.cgi?id=24588
15 - https://nvd.nist.gov/vuln/detail/CVE-2019-7524
16 - https://www.dovecot.org/list/dovecot-news/2019-March/000402.html
17 ID: MGASA-2019-0141

  ViewVC Help
Powered by ViewVC 1.1.26