Oval Definition:oval:org.opensuse.security:def:72842
Revision Date:2020-12-01Version:1
Title:Security update for dovecot23 (Important)
Description:

This update for dovecot23 fixes the following issues:

- CVE-2020-12673: improper implementation of NTLM does not check message buffer size (bsc#1174922). - CVE-2020-12674: improper implementation of RPA mechanism (bsc#1174923).
Family:unixClass:patch
Status:Reference(s):1051510
1071995
1094555
1111666
1112374
1114279
1128432
1134730
1134738
1135153
1135296
1135642
1136156
1136157
1136271
1136333
1137103
1137194
1137366
1137884
1137985
1138263
1138336
1138374
1138375
1138589
1138681
1138719
1138732
1174922
1174923
CVE-2018-16871
CVE-2019-12614
CVE-2019-12817
CVE-2020-12673
CVE-2020-12674
SUSE-SU-2019:1744-1
SUSE-SU-2020:2267-1
Platform(s):SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Workstation Extension 15 SP1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • dovecot23-2.3.10-16 is installed
  • OR dovecot23-backend-mysql-2.3.10-16 is installed
  • OR dovecot23-backend-pgsql-2.3.10-16 is installed
  • OR dovecot23-backend-sqlite-2.3.10-16 is installed
  • OR dovecot23-devel-2.3.10-16 is installed
  • OR dovecot23-fts-2.3.10-16 is installed
  • OR dovecot23-fts-lucene-2.3.10-16 is installed
  • OR dovecot23-fts-solr-2.3.10-16 is installed
  • OR dovecot23-fts-squat-2.3.10-16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.7 is installed
  • OR kernel-default-extra-4.12.14-197.7 is installed
  • BACK