File _patchinfo of Package patchinfo.import4251
<patchinfo incident="postfix" version="4251"> <issue tracker="bnc" id="677792" /> <issue tracker="CVE" id="CVE-2011-0411" /> <category>security</category> <rating>low</rating> <summary>postfix security update</summary> <description>postfix did not clear the receive buffer after the STARTTLS command. A man-in-the middle could therefore inject commands in the unencrypted stream that get interpreted in the encrypted phase after STARTTLS (CVE-2011-0411). </description> <packager>adrianSuSE</packager> </patchinfo>