~ubuntu-branches/ubuntu/lucid/postfix/lucid-security

Viewing all changes in revision 36.

  • Committer: Bazaar Package Importer
  • Author(s): Marc Deslauriers
  • Date: 2011-04-15 10:21:59 UTC
  • Revision ID: james.westby@ubuntu.com-20110415102159-cubpmsddfp15v7eu
Tags: 2.7.0-1ubuntu0.1
* SECURITY UPDATE: man-in-the-middle via plaintext command injection
  - src/smtp/smtp_proto.c, src/smtpd/smtpd.c: discard the contents of the
    stream buffer so there is no pending plaintext.
  - Origin: backported from postfix-2.7-patch03.gz
  - CVE-2011-0411

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: