Page MenuHomeFreeBSD

Update mail/postfixadmin to 3.0.2 (security fix)

Authored by krion on Feb 10 2017, 11:56 AM.
Referenced Files
F68316578: D9521.diff
Tue, Sep 26, 7:36 PM
Unknown Object (File)
Sun, Sep 17, 6:03 AM
Unknown Object (File)
Aug 14 2023, 8:14 AM
Unknown Object (File)
Aug 9 2023, 3:35 PM
Unknown Object (File)
Aug 3 2023, 11:12 PM
Unknown Object (File)
Jul 16 2023, 7:02 AM
Unknown Object (File)
Jun 27 2023, 9:17 AM
Unknown Object (File)
Jun 15 2023, 1:14 PM



Maintainer approved.

The most important reason for the release was a SECURITY FIX: don't allow to
delete protected aliases (CVE-2017-5930, PR#23). Thanks to Janfred @github for
the report and the pull request!

Besides that, the following non-security bugs were fixed:

  • fix VacationHandler for PostgreSQL
  • AliasHandler: restrict mailbox subquery to allowed and specified domains to improve performance on setups with lots of mailboxes
  • allow switching between dovecot: password schemes while still accepting passwords hashed using the previous dovecot: scheme
  • FetchmailHandler: use a valid date as default for 'date'
  • fix date formatting in non-english languages when using PostgreSQL
  • various small fixes

Diff Detail

rP FreeBSD ports repository
Lint Not Applicable
Tests Not Applicable

Event Timeline

krion retitled this revision from to Update mail/postfixadmin to 3.0.2 (security fix).
krion updated this object.
krion edited the test plan for this revision. (Show Details)
krion added reviewers: mat, fjoe.
mat edited edge metadata.
This revision is now accepted and ready to land.Feb 10 2017, 5:19 PM
This revision was automatically updated to reflect the committed changes.