IMAP and POP3 Server Written Primarily with Security in Mind

Edit Package vpopmail-dovecot22

Dovecot is an IMAP and POP3 server for Linux and UNIX-like systems,
written primarily with security in mind. Although it is written in C,
it uses several coding techniques to avoid most of the common pitfalls.

Dovecot can work with standard mbox and maildir formats and is fully
compatible with UW-IMAP and Courier IMAP servers as well as mail
clients accessing the mailboxes directly.

Author:
--------
Timo Sirainen

Refresh
Refresh
Source Files (show unmerged sources)
Filename Size Changed
dovecot-2.0.configfiles 0000001000 1000 Bytes
dovecot-2.1-pigeonhole.configfiles 0000000074 74 Bytes
dovecot-2.1.configfiles 0000001117 1.09 KB
dovecot-2.2-pigeonhole-0.4.24.2.tar.gz 0001833284 1.75 MB
dovecot-2.2-pigeonhole-0.4.24.2.tar.gz.sig 0000000866 866 Bytes
dovecot-2.2-pigeonhole.configfiles 0000000149 149 Bytes
dovecot-2.2.18-better_ssl_defaults.patch 0000002307 2.25 KB
dovecot-2.2.18-dont_use_etc_ssl_certs.patch 0000005194 5.07 KB
dovecot-2.2.31-dhparams_fips_mode.patch 0000001013 1013 Bytes
dovecot-2.2.36.4.tar.gz 0006257899 5.97 MB
dovecot-2.2.36.4.tar.gz.sig 0000000866 866 Bytes
dovecot-2.2.configfiles 0000001127 1.1 KB
dovecot-rpmlintrc 0000000122 122 Bytes
dovecot22-vpopmail-config.patch 0000003398 3.32 KB
dovecot22.changes 0000137081 134 KB
dovecot22.spec 0000027908 27.3 KB
vpopmail-dovecot22.changes 0000137081 134 KB
Latest Revision
Johannes Weberhofer's avatar Johannes Weberhofer (weberho) committed (revision 23)
- update to 2.2.36.4
  * CVE-2019-11500: IMAP protocol parser does not properly handle
    NUL byte when scanning data in quoted strings, leading to out
    of bounds heap memory writes. Found by Nick Roessler and Rafi
    Rubin. (boo#1145559)
- update pigeonhole to 0.4.24.2
  * CVE-2019-11500: ManageSieve protocol parser does not properly
    handle NUL byte when scanning data in quoted strings, leading
    to out of bounds heap memory writes. Found by Nick Roessler and
    Rafi Rubin. (boo#1145559)
- refreshed patches to apply cleanly again:
  dovecot-2.2.18-better_ssl_defaults.patch
  dovecot-2.2.18-dont_use_etc_ssl_certs.patch
  dovecot-2.2.31-dhparams_fips_mode.patch

- update to 2.2.36.4
  * CVE-2019-11500: IMAP protocol parser does not properly handle
    NUL byte when scanning data in quoted strings, leading to out
    of bounds heap memory writes. Found by Nick Roessler and Rafi
    Rubin. (boo#1145559)
- update pigeonhole to 0.4.24.2
  * CVE-2019-11500: ManageSieve protocol parser does not properly
    handle NUL byte when scanning data in quoted strings, leading
    to out of bounds heap memory writes. Found by Nick Roessler and
    Rafi Rubin. (boo#1145559)
- refreshed patches to apply cleanly again:
  dovecot-2.2.18-better_ssl_defaults.patch
  dovecot-2.2.18-dont_use_etc_ssl_certs.patch
  dovecot-2.2.31-dhparams_fips_mode.patch
Comments 0
openSUSE Build Service is sponsored by