[Bug 216932] [PATCH] mail/postfixadmin Update to 3.0.2 (security fix)
bugzilla-noreply at freebsd.org
bugzilla-noreply at freebsd.org
Thu Feb 9 09:53:15 UTC 2017
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=216932
Bug ID: 216932
Summary: [PATCH] mail/postfixadmin Update to 3.0.2 (security
fix)
Product: Ports & Packages
Version: Latest
Hardware: Any
OS: Any
Status: New
Keywords: patch
Severity: Affects Only Me
Priority: ---
Component: Individual Port(s)
Assignee: freebsd-ports-bugs at FreeBSD.org
Reporter: lukasz at wasikowski.net
CC: ports.maintainer at evilphi.com
Flags: maintainer-feedback?(ports.maintainer at evilphi.com)
Keywords: patch
CC: ports.maintainer at evilphi.com
Created attachment 179790
--> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=179790&action=edit
Patch to version 3.0.2
Update to 3.0.2.
Message from developer:
The most important reason for the release was a SECURITY FIX: don't allow to
delete protected aliases (CVE-2017-5930, PR#23). Thanks to Janfred @github for
the report and the pull request!
Besides that, the following non-security bugs were fixed:
- fix VacationHandler for PostgreSQL
- AliasHandler: restrict mailbox subquery to allowed and specified domains to
improve performance on setups with lots of mailboxes
- allow switching between dovecot: password schemes while still accepting
passwords hashed using the previous dovecot: scheme
- FetchmailHandler: use a valid date as default for 'date'
- fix date formatting in non-english languages when using PostgreSQL
- debian packaging: improve dependencies, remove old templates_c/ files
- various small fixes
Updates from 3.0 should be boring, you don't even need to run setup.php.
--
You are receiving this mail because:
You are the assignee for the bug.
More information about the freebsd-ports-bugs
mailing list