ELSA-2020-1062

ELSA-2020-1062 - dovecot security and bug fix update

Type:SECURITY
Impact:MODERATE
Release Date:2020-04-06

Description


[1:2.2.36-6]
- fix CVE-2019-11500: IMAP protocol parser does not properly handle NUL byte
when scanning data in quoted strings, leading to out of bounds heap
memory writes (#1741787)

[1:2.2.36-5]
- fix CVE-2019-3814: improper certificate validation (#1674369)
- fix CVE-2019-7524: buffer overflow in indexer-worker process resulting in privilege
escalation (#1700398)

[1:2.2.36-4]
- use portreserve to avoid port conflicts(#1270283)


Related CVEs


CVE-2019-7524
CVE-2019-3814

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) dovecot-2.2.36-6.el7.src.rpm6c723d48f660e39ba5a9158540dd666a145f4c3c149a1f74bbf0ba9c6d115d0dELBA-2020-3921ol7_aarch64_latest
dovecot-2.2.36-6.el7.src.rpm6c723d48f660e39ba5a9158540dd666a145f4c3c149a1f74bbf0ba9c6d115d0dELBA-2020-3921ol7_aarch64_optional_latest
dovecot-2.2.36-6.el7.src.rpm6c723d48f660e39ba5a9158540dd666a145f4c3c149a1f74bbf0ba9c6d115d0dELBA-2020-3921ol7_aarch64_u8_base
dovecot-2.2.36-6.el7.aarch64.rpm6c251fde511ec64029c69bd0f181e310fe6010f8d41bc8f4846ceea988342374ELBA-2020-3921ol7_aarch64_latest
dovecot-2.2.36-6.el7.aarch64.rpm6c251fde511ec64029c69bd0f181e310fe6010f8d41bc8f4846ceea988342374ELBA-2020-3921ol7_aarch64_u8_base
dovecot-devel-2.2.36-6.el7.aarch64.rpm4648b26b849e42074bdb1d7bcb944e8e7b4d8b29fc983a26088b6a48b187317cELBA-2020-3921ol7_aarch64_optional_latest
dovecot-mysql-2.2.36-6.el7.aarch64.rpm8fa528d9bb7b96544b15bbd4cbb406089d0572a0c3d8c6327cb9e5e7bca26245ELBA-2020-3921ol7_aarch64_latest
dovecot-mysql-2.2.36-6.el7.aarch64.rpm8fa528d9bb7b96544b15bbd4cbb406089d0572a0c3d8c6327cb9e5e7bca26245ELBA-2020-3921ol7_aarch64_u8_base
dovecot-pgsql-2.2.36-6.el7.aarch64.rpma2447fbe334f6a339ce0b5c8c4f4ee5e632464a457043cb6f18c03f36a6090feELBA-2020-3921ol7_aarch64_latest
dovecot-pgsql-2.2.36-6.el7.aarch64.rpma2447fbe334f6a339ce0b5c8c4f4ee5e632464a457043cb6f18c03f36a6090feELBA-2020-3921ol7_aarch64_u8_base
dovecot-pigeonhole-2.2.36-6.el7.aarch64.rpm5b97f7fcfdd6b836dfb92997fd7d0b1f86a5908fc5d373ec98ef6f6a778cce6fELBA-2020-3921ol7_aarch64_latest
dovecot-pigeonhole-2.2.36-6.el7.aarch64.rpm5b97f7fcfdd6b836dfb92997fd7d0b1f86a5908fc5d373ec98ef6f6a778cce6fELBA-2020-3921ol7_aarch64_u8_base
Oracle Linux 7 (x86_64) dovecot-2.2.36-6.el7.src.rpm6c723d48f660e39ba5a9158540dd666a145f4c3c149a1f74bbf0ba9c6d115d0dELBA-2020-3921ol7_x86_64_latest
dovecot-2.2.36-6.el7.src.rpm6c723d48f660e39ba5a9158540dd666a145f4c3c149a1f74bbf0ba9c6d115d0dELBA-2020-3921ol7_x86_64_optional_latest
dovecot-2.2.36-6.el7.src.rpm6c723d48f660e39ba5a9158540dd666a145f4c3c149a1f74bbf0ba9c6d115d0dELBA-2020-3921ol7_x86_64_u8_base
dovecot-2.2.36-6.el7.i686.rpm503c8db4bcfc7da9cf8721cee23104ac65811bc2053aca0119c99dcf09812b53ELBA-2020-3921ol7_x86_64_latest
dovecot-2.2.36-6.el7.i686.rpm503c8db4bcfc7da9cf8721cee23104ac65811bc2053aca0119c99dcf09812b53ELBA-2020-3921ol7_x86_64_u8_base
dovecot-2.2.36-6.el7.x86_64.rpm25876817684d8d482e43e0ef63255702da8312cfd7894eb8dffcfb09b0234ff5ELBA-2020-3921ol7_x86_64_latest
dovecot-2.2.36-6.el7.x86_64.rpm25876817684d8d482e43e0ef63255702da8312cfd7894eb8dffcfb09b0234ff5ELBA-2020-3921ol7_x86_64_u8_base
dovecot-devel-2.2.36-6.el7.x86_64.rpm66b696f5e0b4692a76d0258e0092b871fe222e4271b2d59656917452d13ab57eELBA-2020-3921ol7_x86_64_optional_latest
dovecot-mysql-2.2.36-6.el7.x86_64.rpm028d36db26cd6a7c24eb7e254c945e967c0cc718376df8e089bbff16c8228d14ELBA-2020-3921ol7_x86_64_latest
dovecot-mysql-2.2.36-6.el7.x86_64.rpm028d36db26cd6a7c24eb7e254c945e967c0cc718376df8e089bbff16c8228d14ELBA-2020-3921ol7_x86_64_u8_base
dovecot-pgsql-2.2.36-6.el7.x86_64.rpme44580c157c558dfd69845b7184b7bd0c73dca22a2bd4638a03edc2efff87996ELBA-2020-3921ol7_x86_64_latest
dovecot-pgsql-2.2.36-6.el7.x86_64.rpme44580c157c558dfd69845b7184b7bd0c73dca22a2bd4638a03edc2efff87996ELBA-2020-3921ol7_x86_64_u8_base
dovecot-pigeonhole-2.2.36-6.el7.x86_64.rpm87a5d79f79e514a912f5d33f52332f2976e254d73f57075df3a00e613a063d3eELBA-2020-3921ol7_x86_64_latest
dovecot-pigeonhole-2.2.36-6.el7.x86_64.rpm87a5d79f79e514a912f5d33f52332f2976e254d73f57075df3a00e613a063d3eELBA-2020-3921ol7_x86_64_u8_base



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete