Описание
ELSA-2020-2901: dovecot security update (IMPORTANT)
[1:2.3.8-2.1]
- fix CVE-2020-10957: malformed NOOP commands leads to DoS (#1840353)
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
dovecot
2.3.8-2.el8_2.1
dovecot-devel
2.3.8-2.el8_2.1
dovecot-mysql
2.3.8-2.el8_2.1
dovecot-pgsql
2.3.8-2.el8_2.1
dovecot-pigeonhole
2.3.8-2.el8_2.1
Oracle Linux x86_64
dovecot
2.3.8-2.el8_2.1
dovecot-devel
2.3.8-2.el8_2.1
dovecot-mysql
2.3.8-2.el8_2.1
dovecot-pgsql
2.3.8-2.el8_2.1
dovecot-pigeonhole
2.3.8-2.el8_2.1
Связанные CVE
Связанные уязвимости
In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Dereference and crash in submission-login, submission, or lmtp.
In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Dereference and crash in submission-login, submission, or lmtp.
In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Dereference and crash in submission-login, submission, or lmtp.
In Dovecot before 2.3.10.1, unauthenticated sending of malformed param ...
In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Dereference and crash in submission-login, submission, or lmtp.