ELSA-2021-1887

ELSA-2021-1887 - dovecot security and bug fix update

Type:SECURITY
Impact:MODERATE
Release Date:2021-05-25

Description


[1:2.3.8-9]
- fix CVE-2020-24386 IMAP hibernation function allows mail access (#1913534)

[1:2.3.8-8]
- fix CVE-2020-25275 denial of service via mail MIME parsing (#1914019)

[1:2.3.8-7]
- change run directory from /var/run to /run (#1805947)

[1:2.3.8-6]
- fix mail storage block count parsing (#1894418)
- MIME parser crashed when boundaries were wrong (#1888111)

[1:2.3.8-5]
- multilib compatibility (#1853137)


Related CVEs


CVE-2020-24386
CVE-2020-25275

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) dovecot-2.3.8-9.el8.src.rpm22700d54a9c59cd54c6a84e6aa31ac3e81bc4a910159ff1189c017c1da03506c-ol8_aarch64_appstream
dovecot-2.3.8-9.el8.src.rpm22700d54a9c59cd54c6a84e6aa31ac3e81bc4a910159ff1189c017c1da03506c-ol8_aarch64_codeready_builder
dovecot-2.3.8-9.el8.aarch64.rpm06807803fe13e44a94207b62601cf20f47ec0de273b24e0ee1a632de23bfd1da-ol8_aarch64_appstream
dovecot-devel-2.3.8-9.el8.aarch64.rpmf482895797a85396a9d71a588ebce87ebb859c3a1356dcae047c3e028207f445-ol8_aarch64_codeready_builder
dovecot-mysql-2.3.8-9.el8.aarch64.rpma6251cf1fc0b5b838a67ccebca418818c9f438dc8b6ead5931a8c992ed55392d-ol8_aarch64_appstream
dovecot-pgsql-2.3.8-9.el8.aarch64.rpm97222232b4f8cd992067b8b222ecadf00a8619a6fcca19751adb3c3454c09147-ol8_aarch64_appstream
dovecot-pigeonhole-2.3.8-9.el8.aarch64.rpm7e9c6aeaffbb14d2f177f3f92f2b7d4b1483df6cb828de905e1fdd40b2ade153-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) dovecot-2.3.8-9.el8.src.rpm22700d54a9c59cd54c6a84e6aa31ac3e81bc4a910159ff1189c017c1da03506c-ol8_x86_64_appstream
dovecot-2.3.8-9.el8.src.rpm22700d54a9c59cd54c6a84e6aa31ac3e81bc4a910159ff1189c017c1da03506c-ol8_x86_64_codeready_builder
dovecot-2.3.8-9.el8.i686.rpmde0866bf3e5b5d7bbfa8b968d5a33f833f15df128aaea2b68eea9e26fcb1c8f0-ol8_x86_64_codeready_builder
dovecot-2.3.8-9.el8.x86_64.rpm39124a2f1ffbd2fb3cd262646184eeb2defb8509dc73154e7a67c588b871da7f-ol8_x86_64_appstream
dovecot-devel-2.3.8-9.el8.i686.rpm7ef9be846d29740ca79a0ccf258a2b54ab4be43c6ca39603886a3d06f9118fb0-ol8_x86_64_codeready_builder
dovecot-devel-2.3.8-9.el8.x86_64.rpmdc9eb4cd137d284704fb1097c8b17d168d7cf333030df908caafe46d035322b3-ol8_x86_64_codeready_builder
dovecot-mysql-2.3.8-9.el8.x86_64.rpma8aad78bbdc30d3a9645146525fafb54b02d134dc32c3aeb7915b9f205f26a72-ol8_x86_64_appstream
dovecot-pgsql-2.3.8-9.el8.x86_64.rpmc1eb1fe57beda001eadae23aaf81d8530f97cf0316c51824223c4ff7119997f7-ol8_x86_64_appstream
dovecot-pigeonhole-2.3.8-9.el8.x86_64.rpma3ca5cd62c1215b75628deb4c6069a94bd4bdbcd57da97f9cb0f6fb4d5772e9c-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete