Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2014-0790

Опубликовано: 25 июн. 2014
Источник: oracle-oval
Платформа: Oracle Linux 6
Платформа: Oracle Linux 7

Описание

ELSA-2014-0790: dovecot security update (MODERATE)

[1:2.0.9-7.1]

  • fix CVE-2014-3430: denial of service through maxxing out SSL connections (#1108001)

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

dovecot

2.0.9-7.el6_5.1

dovecot-devel

2.0.9-7.el6_5.1

dovecot-mysql

2.0.9-7.el6_5.1

dovecot-pgsql

2.0.9-7.el6_5.1

dovecot-pigeonhole

2.0.9-7.el6_5.1

Oracle Linux i686

dovecot

2.0.9-7.el6_5.1

dovecot-devel

2.0.9-7.el6_5.1

dovecot-mysql

2.0.9-7.el6_5.1

dovecot-pgsql

2.0.9-7.el6_5.1

dovecot-pigeonhole

2.0.9-7.el6_5.1

Oracle Linux 7

Oracle Linux x86_64

dovecot

2.2.10-4.el7_0.1

dovecot-mysql

2.2.10-4.el7_0.1

dovecot-pgsql

2.2.10-4.el7_0.1

dovecot-pigeonhole

2.2.10-4.el7_0.1

Связанные CVE

Связанные уязвимости

ubuntu
около 11 лет назад

Dovecot 1.1 before 2.2.13 and dovecot-ee before 2.1.7.7 and 2.2.x before 2.2.12.12 does not properly close old connections, which allows remote attackers to cause a denial of service (resource consumption) via an incomplete SSL/TLS handshake for an IMAP/POP3 connection.

redhat
больше 11 лет назад

Dovecot 1.1 before 2.2.13 and dovecot-ee before 2.1.7.7 and 2.2.x before 2.2.12.12 does not properly close old connections, which allows remote attackers to cause a denial of service (resource consumption) via an incomplete SSL/TLS handshake for an IMAP/POP3 connection.

nvd
около 11 лет назад

Dovecot 1.1 before 2.2.13 and dovecot-ee before 2.1.7.7 and 2.2.x before 2.2.12.12 does not properly close old connections, which allows remote attackers to cause a denial of service (resource consumption) via an incomplete SSL/TLS handshake for an IMAP/POP3 connection.

debian
около 11 лет назад

Dovecot 1.1 before 2.2.13 and dovecot-ee before 2.1.7.7 and 2.2.x befo ...

github
около 3 лет назад

Dovecot 1.1 before 2.2.13 and dovecot-ee before 2.1.7.7 and 2.2.x before 2.2.12.12 does not properly close old connections, which allows remote attackers to cause a denial of service (resource consumption) via an incomplete SSL/TLS handshake for an IMAP/POP3 connection.