Compare commits

...
Sign in to create a new pull request.

6 commits

Author SHA1 Message Date
Michal Hlavinka
73e1e2f9e1 Merge branch 'rawhide' into f34 2021-12-07 23:09:38 +01:00
Michal Hlavinka
b008fc5b27 Merge branch 'rawhide' into f34 2021-11-02 22:16:20 +01:00
Michal Hlavinka
46324d9786 dovecot updated to 2.3.16, pigeonhole to 0.5.16
fixes several regressions
2021-08-20 23:31:26 +02:00
Michal Hlavinka
1c41438458 fix spec file condition 2021-06-23 11:33:14 +02:00
Michal Hlavinka
2c92a0bb32 dovecot updated to 2.3.15, pigeonhole updated to 0.5.15
CVE-2021-29157: Dovecot does not correctly escape kid and azp fields in
  JWT tokens. This may be used to supply attacker controlled keys to
  validate tokens, if attacker has local access.
CVE-2021-33515: On-path attacker could have injected plaintext commands
  before STARTTLS negotiation that would be executed after STARTTLS
  finished with the client.
Add TSLv1.3 support to min_protocols.
Allow configuring ssl_cipher_suites. (for TLSv1.3+)
2021-06-23 10:30:24 +02:00
Michal Hlavinka
eb6cf88afc dovecot updated to 2.3.14, pigeonhole to 0.5.14
use OpenSSL's implementation of HMAC
Remove autocreate, expire, snarf and mail-filter plugins.
Remove cydir storage driver.
Remove XZ/LZMA write support. Read support will be removed in future release.
2021-03-22 21:36:42 +01:00

Diff content is not available