Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Mon, 14 Sep 2009 20:40:06 +0200
From: Tomas Hoger <thoger@...hat.com>
To: oss-security@...ts.openwall.com
Subject: Re: CVE for recent cyrus-imap issue

On Tue, 8 Sep 2009 18:07:33 +0200 Nico Golde
<oss-security+ml@...lde.de> wrote:

> CVE-2009-2632

Looks like few more overflows were spotted and fixed by Dovecot
upstream while fixing this issue in their copy of CMU sieve code:

http://dovecot.org/list/dovecot-news/2009-September/000135.html

These seem to deserve separate CVE.

-- 
Tomas Hoger / Red Hat Security Response Team

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ