Date: Mon, 29 Jan 2018 21:04:37 +0000 (UTC) From: Niclas Zeising <zeising@FreeBSD.org> To: ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-branches@freebsd.org Subject: svn commit: r460337 - in branches/2018Q1/mail/dovecot: . files Message-ID: <201801292104.w0TL4bTY083361@repo.freebsd.org>
next in thread | raw e-mail | index | archive | help
Author: zeising Date: Mon Jan 29 21:04:37 2018 New Revision: 460337 URL: https://svnweb.freebsd.org/changeset/ports/460337 Log: MFH: r460336 Add patch and fix CVE-2017-15132 Add upstream patch to fix CVE-2017-15132, memory leak in the log in process that can cause memory exhaustion. PR: 225446 Submitted by: Vladimir Krstulja Approved by: adamw (maintainer), swills (ports-secteam) Security: 92b8b284-a3a2-41b1-956c-f9cf8b74f500 Approved by: ports-secteam (implicit) Added: branches/2018Q1/mail/dovecot/files/patch-src_lib-auth_auth-client-request.c - copied unchanged from r460336, head/mail/dovecot/files/patch-src_lib-auth_auth-client-request.c Modified: branches/2018Q1/mail/dovecot/Makefile Directory Properties: branches/2018Q1/ (props changed) Modified: branches/2018Q1/mail/dovecot/Makefile ============================================================================== --- branches/2018Q1/mail/dovecot/Makefile Mon Jan 29 20:59:18 2018 (r460336) +++ branches/2018Q1/mail/dovecot/Makefile Mon Jan 29 21:04:37 2018 (r460337) @@ -13,7 +13,7 @@ PORTNAME= dovecot PORTVERSION= 2.2.33.2 -PORTREVISION= 2 +PORTREVISION= 3 CATEGORIES= mail ipv6 MASTER_SITES= https://www.dovecot.org/releases/2.2/ Copied: branches/2018Q1/mail/dovecot/files/patch-src_lib-auth_auth-client-request.c (from r460336, head/mail/dovecot/files/patch-src_lib-auth_auth-client-request.c) ============================================================================== --- /dev/null 00:00:00 1970 (empty, because file is newly added) +++ branches/2018Q1/mail/dovecot/files/patch-src_lib-auth_auth-client-request.c Mon Jan 29 21:04:37 2018 (r460337, copy of r460336, head/mail/dovecot/files/patch-src_lib-auth_auth-client-request.c) @@ -0,0 +1,10 @@ +--- src/lib-auth/auth-client-request.c.orig 2017-10-05 17:10:44 UTC ++++ src/lib-auth/auth-client-request.c +@@ -180,6 +180,7 @@ void auth_client_request_abort(struct auth_client_requ + + auth_client_send_cancel(request->conn->client, request->id); + call_callback(request, AUTH_REQUEST_STATUS_ABORT, NULL, NULL); ++ pool_unref(&request->pool); + } + + unsigned int auth_client_request_get_id(struct auth_client_request *request)
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201801292104.w0TL4bTY083361>