File _patchinfo of Package patchinfo.20134
<patchinfo incident="20134">
<issue tracker="cve" id="2021-33515"/>
<issue tracker="cve" id="2021-29157"/>
<issue tracker="bnc" id="1187419">VUL-0: EMBARGOED: CVE-2021-33515: dovecot,dovecot22,dovecot23: Attacker can potentially steal user credentials and mails</issue>
<issue tracker="bnc" id="1187418">VUL-0: EMBARGOED: CVE-2021-29157: dovecot,dovecot22,dovecot23: Local attacker can login as any user and access their emails</issue>
<packager>varkoly</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for dovecot23</summary>
<description>This update for dovecot23 fixes the following issues:
- CVE-2021-29157: Local attacker can login as any user and access their emails (bsc#1187418)
- CVE-2021-33515: Attacker can potentially steal user credentials and mails (bsc#1187419)
</description>
</patchinfo>