freebsd-ports/mail/dovecot
Larry Rosenman ccd6152ded MFH: r499273
mail/dovecot: upgrade to 2.3.5.2

* CVE-2019-10691: Trying to login with 8bit username containing
      invalid UTF8 input causes auth process to crash if auth policy is
      enabled. This could be used rather easily to cause a DoS. Similar
      crash also happens during mail delivery when using invalid UTF8 in
      From or Subject header when OX push notification driver is used.

Security:	CVE-2019-10691

Approved by:	ports-secteam (miwi)
2019-04-20 15:46:22 +00:00
..
files mail/dovecot and mail/dovecot-pigeonhole upgrade to 2.3.5 and 0.5.5 respectively 2019-03-05 23:34:12 +00:00
distinfo MFH: r499273 2019-04-20 15:46:22 +00:00
Makefile MFH: r499273 2019-04-20 15:46:22 +00:00
pkg-descr
pkg-plist mail/dovecot and mail/dovecot-pigeonhole upgrade to 2.3.5 and 0.5.5 respectively 2019-03-05 23:34:12 +00:00