dovecot: bump version to 2.2.29.1 (security)
authorVicente Olivert Riera <Vincent.Riera@imgtec.com>
Wed, 12 Apr 2017 15:56:47 +0000 (16:56 +0100)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Wed, 12 Apr 2017 19:01:12 +0000 (21:01 +0200)
commita1a1f484a9a47f121c071d345fae4472b56bac81
treec47e7e8b2a9501b3029dbcf8a1f09417ee24c50f
parentefd6d5fd24706d825abae5f2bb39771fce586f09
dovecot: bump version to 2.2.29.1 (security)

Security fix:

  passdb/userdb dict: Don't double-expand %variables in keys. If dict
  was used as the authentication passdb, using specially crafted
  %variables in the username could be used to cause DoS (CVE-2017-2669)

Full ChangeLog 2.2.29 (including CVE fix):
  https://www.dovecot.org/list/dovecot-news/2017-April/000341.html

Full ChangeLog 2.2.29.1 (some fixes forgotten in the 2.2.29 release):

  https://www.dovecot.org/list/dovecot-news/2017-April/000344.html

Signed-off-by: Vicente Olivert Riera <Vincent.Riera@imgtec.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/dovecot/dovecot.hash
package/dovecot/dovecot.mk