Subject: CVS commit: pkgsrc/mail/dovecot2
From: Hauke Fath
Date: 2019-03-29 15:27:43
Message id: 20190329142743.AB3C9FB16@cvs.NetBSD.org

Log Message:
Security fix:

    * CVE-2019-7524: Missing input buffer size validation leads into
      arbitrary buffer overflow when reading fts or pop3 uidl header
      from Dovecot index. Exploiting this requires direct write access to
      the index files.

Files:
RevisionActionfile
1.26modifypkgsrc/mail/dovecot2/Makefile.common
1.90modifypkgsrc/mail/dovecot2/distinfo