File _patchinfo of Package patchinfo.20134

<patchinfo incident="20134">
  <issue tracker="cve" id="2021-33515"/>
  <issue tracker="cve" id="2021-29157"/>
  <issue tracker="bnc" id="1187419">VUL-0: EMBARGOED: CVE-2021-33515: dovecot,dovecot22,dovecot23: Attacker can potentially steal user credentials and mails</issue>
  <issue tracker="bnc" id="1187418">VUL-0: EMBARGOED: CVE-2021-29157: dovecot,dovecot22,dovecot23: Local attacker can login as any user and access their emails</issue>
  <packager>varkoly</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for dovecot23</summary>
  <description>This update for dovecot23 fixes the following issues:

- CVE-2021-29157: Local attacker can login as any user and access their emails (bsc#1187418)
- CVE-2021-33515: Attacker can potentially steal user credentials and mails (bsc#1187419)
</description>
</patchinfo>
openSUSE Build Service is sponsored by