ELSA-2019-2836

ELSA-2019-2836 - dovecot security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2019-09-20

Description


[1:2.2.36-3.1]
- fix CVE-2019-11500: IMAP protocol parser does not properly handle NUL byte
when scanning data in quoted strings, leading to out of bounds heap
memory writes (#1751383)


Related CVEs


CVE-2019-11500

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) dovecot-2.2.36-3.el7_7.1.src.rpm60cae4616c930f0b7b8e245bd1b3fef7551ec5495c0ff0e92443a405aeb6a0ffELBA-2020-3921ol7_aarch64_latest
dovecot-2.2.36-3.el7_7.1.src.rpm60cae4616c930f0b7b8e245bd1b3fef7551ec5495c0ff0e92443a405aeb6a0ffELBA-2020-3921ol7_aarch64_optional_latest
dovecot-2.2.36-3.el7_7.1.src.rpm60cae4616c930f0b7b8e245bd1b3fef7551ec5495c0ff0e92443a405aeb6a0ffELBA-2020-3921ol7_aarch64_u7_patch
dovecot-2.2.36-3.el7_7.1.aarch64.rpma4a0fcc8e5de66a8c8f5f4c34e0a9e4388ef78bec221ce3e20ccc81d58d46b9eELBA-2020-3921ol7_aarch64_latest
dovecot-2.2.36-3.el7_7.1.aarch64.rpma4a0fcc8e5de66a8c8f5f4c34e0a9e4388ef78bec221ce3e20ccc81d58d46b9eELBA-2020-3921ol7_aarch64_u7_patch
dovecot-devel-2.2.36-3.el7_7.1.aarch64.rpmbd618e3c4dd50bf8dbbeb433643c69f311b76e0b4eacae6d272ce0a0224ad609ELBA-2020-3921ol7_aarch64_optional_latest
dovecot-mysql-2.2.36-3.el7_7.1.aarch64.rpmb8a629b8e9da0428c17e16b500f8d3da9f8f87ba0dba2f2c8b00beaa8a838b8fELBA-2020-3921ol7_aarch64_latest
dovecot-mysql-2.2.36-3.el7_7.1.aarch64.rpmb8a629b8e9da0428c17e16b500f8d3da9f8f87ba0dba2f2c8b00beaa8a838b8fELBA-2020-3921ol7_aarch64_u7_patch
dovecot-pgsql-2.2.36-3.el7_7.1.aarch64.rpm540c31569b7f8b9a9dcd24687b511a897a66b6faf860116638e2cac86fc9e095ELBA-2020-3921ol7_aarch64_latest
dovecot-pgsql-2.2.36-3.el7_7.1.aarch64.rpm540c31569b7f8b9a9dcd24687b511a897a66b6faf860116638e2cac86fc9e095ELBA-2020-3921ol7_aarch64_u7_patch
dovecot-pigeonhole-2.2.36-3.el7_7.1.aarch64.rpm9ca49734673cdc7e209737d1a0dc91a8fce170ec070f39babb59d9f34c1bcb71ELBA-2020-3921ol7_aarch64_latest
dovecot-pigeonhole-2.2.36-3.el7_7.1.aarch64.rpm9ca49734673cdc7e209737d1a0dc91a8fce170ec070f39babb59d9f34c1bcb71ELBA-2020-3921ol7_aarch64_u7_patch
Oracle Linux 7 (x86_64) dovecot-2.2.36-3.el7_7.1.src.rpm60cae4616c930f0b7b8e245bd1b3fef7551ec5495c0ff0e92443a405aeb6a0ffELBA-2020-3921ol7_x86_64_latest
dovecot-2.2.36-3.el7_7.1.src.rpm60cae4616c930f0b7b8e245bd1b3fef7551ec5495c0ff0e92443a405aeb6a0ffELBA-2020-3921ol7_x86_64_optional_latest
dovecot-2.2.36-3.el7_7.1.src.rpm60cae4616c930f0b7b8e245bd1b3fef7551ec5495c0ff0e92443a405aeb6a0ffELBA-2020-3921ol7_x86_64_u7_patch
dovecot-2.2.36-3.el7_7.1.i686.rpm8f801bbd9bb79339d1bda1dd963668a07512732aef02df147d0908c6e59201dbELBA-2020-3921ol7_x86_64_latest
dovecot-2.2.36-3.el7_7.1.i686.rpm8f801bbd9bb79339d1bda1dd963668a07512732aef02df147d0908c6e59201dbELBA-2020-3921ol7_x86_64_u7_patch
dovecot-2.2.36-3.el7_7.1.x86_64.rpm514708c5f2c02b022a107c7147ce960d4fe094d0d8e9147f060847a81f19a6ebELBA-2020-3921ol7_x86_64_latest
dovecot-2.2.36-3.el7_7.1.x86_64.rpm514708c5f2c02b022a107c7147ce960d4fe094d0d8e9147f060847a81f19a6ebELBA-2020-3921ol7_x86_64_u7_patch
dovecot-devel-2.2.36-3.el7_7.1.x86_64.rpm6e9cf5144a3c27088e1e367fda30b5c482088cee8f54a18894e292bc606b735fELBA-2020-3921ol7_x86_64_optional_latest
dovecot-mysql-2.2.36-3.el7_7.1.x86_64.rpm75610560ceb90f5226b444f29c78877d963bd7a323fc204f3ebd3949356f1222ELBA-2020-3921ol7_x86_64_latest
dovecot-mysql-2.2.36-3.el7_7.1.x86_64.rpm75610560ceb90f5226b444f29c78877d963bd7a323fc204f3ebd3949356f1222ELBA-2020-3921ol7_x86_64_u7_patch
dovecot-pgsql-2.2.36-3.el7_7.1.x86_64.rpmc5e328c77c6d60717fd94575307a6689d70f4f9758815d2f8a25a6ba9ad6b3d4ELBA-2020-3921ol7_x86_64_latest
dovecot-pgsql-2.2.36-3.el7_7.1.x86_64.rpmc5e328c77c6d60717fd94575307a6689d70f4f9758815d2f8a25a6ba9ad6b3d4ELBA-2020-3921ol7_x86_64_u7_patch
dovecot-pigeonhole-2.2.36-3.el7_7.1.x86_64.rpmebaf82291dfb141df6ebf0200c60a4746a9e04679c10a9f925ac4abc11827948ELBA-2020-3921ol7_x86_64_latest
dovecot-pigeonhole-2.2.36-3.el7_7.1.x86_64.rpmebaf82291dfb141df6ebf0200c60a4746a9e04679c10a9f925ac4abc11827948ELBA-2020-3921ol7_x86_64_u7_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete