[El-errata] ELEA-2015-0277 Oracle Linux 6 cyrus-imapd enhancement update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Mon Mar 2 13:26:41 PST 2015


Oracle Linux Enhancement Advisory ELEA-2015-0277

http://linux.oracle.com/errata/ELEA-2015-0277.html

The following updated rpms for Oracle Linux 6 have been uploaded to the 
Unbreakable Linux Network:

i386:
cyrus-imapd-2.3.16-13.el6_6.i686.rpm
cyrus-imapd-devel-2.3.16-13.el6_6.i686.rpm
cyrus-imapd-utils-2.3.16-13.el6_6.i686.rpm

x86_64:
cyrus-imapd-2.3.16-13.el6_6.x86_64.rpm
cyrus-imapd-devel-2.3.16-13.el6_6.i686.rpm
cyrus-imapd-devel-2.3.16-13.el6_6.x86_64.rpm
cyrus-imapd-utils-2.3.16-13.el6_6.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/cyrus-imapd-2.3.16-13.el6_6.src.rpm



Description of changes:

[2.3.16-13]
- Resolves: #1156663 - remove unnecessary options

[2.3.16-12]
- Resolves: #1156663 - fix ABI compatibility

[2.3.16-11]
- Resolves: #1156663 - backport method to disable SSLv3

[2.3.16-10]
- fix deadlock in idled code (#739871)

[2.3.16-9]
- fix CVE-2011-3481: NULL pointer dereference via crafted
   References header in email (#738391)
- fix CVE-2011-3372: nntpd authentication bypass (#740822)

[2.3.16-8]
- Resolves: #735392 - CVE-2011-3208 nntpd buffer overflow

[2.3.16-7]
- fix CVE-2011-1926: STARTTLS plaintext command injection vulnerability





More information about the El-errata mailing list