it-securitynotifies AT lists.piratenpartei.de
Betreff: Sicherheitsankündigungen
Listenarchiv
- From: Salvatore Bonaccorso <carnil AT debian.org>
- To: debian-security-announce AT lists.debian.org
- Subject: [IT-SecNots] [SECURITY] [DSA 4690-1] dovecot security update
- Date: Wed, 20 May 2020 19:49:21 +0000
- List-archive: https://lists.debian.org/msgid-search/E1jbUiP-0003Mg-DO AT seger.debian.org
- List-id: <debian-security-announce.lists.debian.org>
- List-url: <http://lists.debian.org/debian-security-announce/>
- Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Date:Message-Id:Subject:To:From:Reply-To:Cc:MIME-Version :Content-Type:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=ccbuVFSE9bVedHaEDfY8kR1qfCG6SwxT+zfHefgt+Jk=; b=vA 0nMfZHvUNOU5wHkpWVMwz2rIGOeSWN0eKCdbByvJTWw2suzzx5GDRZ4NITD6147vHz45WnFfXyeZm H2frXvRq5zjOUuYKUqdy9BbcfpH0bCNsN1tXZrmvXdev362dHoTFxwTCP7fcaXb0Xrgw7Tdgo4CAk J+kaIeEEWVPqv2JGqxKtnLcoXDaokCfSu1zPGKuZfzxn4ZA/LY9Bq9Ebo4IFke3Qd5HRDHD1OhFFh gu/r6BumGi7sUO1njhLEdlWJqpchBIfbQ/zOmNissQK3HQ6UBd92oE3WEI8+0Dxl3Nn+2OvRzXEYz PcEpsVL2iN1O1e7OfNDFC0PUwafGcPBg==;
- Old-return-path: <carnil AT seger.debian.org>
- Priority: urgent
- Resent-date: Wed, 20 May 2020 19:49:43 +0000 (UTC)
- Resent-from: debian-security-announce AT lists.debian.org
- Resent-message-id: <NZj4euJr9jL.A.yVG.XnYxeB@bendel>
- Resent-sender: debian-security-announce-request AT lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-4690-1 security AT debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
May 20, 2020 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : dovecot
CVE ID : CVE-2020-10957 CVE-2020-10958 CVE-2020-10967
Debian Bug : 960963
Several vulnerabilities were discovered in the Dovecot email server,
which could cause crashes in the submission, submission-login or lmtp
services, resulting in denial of service.
For the stable distribution (buster), these problems have been fixed in
version 1:2.3.4.1-5+deb10u2.
We recommend that you upgrade your dovecot packages.
For the detailed security status of dovecot please refer to its security
tracker page at:
https://security-tracker.debian.org/tracker/dovecot
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----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=rqHj
-----END PGP SIGNATURE-----
- [IT-SecNots] [SECURITY] [DSA 4690-1] dovecot security update, Salvatore Bonaccorso, 20.05.2020
Archiv bereitgestellt durch MHonArc 2.6.19.