HomeFreeBSD

MFH: r499273

Description

MFH: r499273

mail/dovecot: upgrade to 2.3.5.2

  • CVE-2019-10691: Trying to login with 8bit username containing invalid UTF8 input causes auth process to crash if auth policy is enabled. This could be used rather easily to cause a DoS. Similar crash also happens during mail delivery when using invalid UTF8 in From or Subject header when OX push notification driver is used.

Security: CVE-2019-10691

Approved by: ports-secteam (miwi)

Details

Provenance
lerAuthored on
Parents
rP499450: science/jmol: Update 14.29.36 -> 14.29.37
Branches
Unknown
Tags
Unknown