Skip to content

dovecot: 2.3.7.1 -> 2.3.7.2 (CVE-2019-11500)#67623

Merged
andir merged 1 commit intoNixOS:masterfrom
tokudan:patch-1
Aug 28, 2019
Merged

dovecot: 2.3.7.1 -> 2.3.7.2 (CVE-2019-11500)#67623
andir merged 1 commit intoNixOS:masterfrom
tokudan:patch-1

Conversation

@tokudan
Copy link
Contributor

@tokudan tokudan commented Aug 28, 2019

Motivation for this change

Fix potential unauthenticated remote code execution.

Things done
  • Tested using sandboxing (nix.useSandbox on NixOS, or option sandbox in nix.conf on non-NixOS)
  • Built on platform(s)
    • NixOS
    • macOS
    • other Linux distributions
  • Tested via one or more NixOS test(s) if existing and applicable for the change (look inside nixos/tests)
  • Tested compilation of all pkgs that depend on this change using nix-shell -p nix-review --run "nix-review wip"
  • Tested execution of all binary files (usually in ./result/bin/)
  • Determined the impact on package closure size (by running nix path-info -S before and after)
  • Ensured that relevant documentation is up to date
  • Fits CONTRIBUTING.md.
Notify maintainers

cc @peti @rickynils @fpletz @globin

@tokudan
Copy link
Contributor Author

tokudan commented Aug 28, 2019

@ofborg test dovecot

@ofborg ofborg bot requested review from fpletz, globin, peti and rickynils August 28, 2019 13:33
@ofborg ofborg bot added 10.rebuild-darwin: 1-10 This PR causes between 1 and 10 packages to rebuild on Darwin. 10.rebuild-linux: 1-10 This PR causes between 1 and 10 packages to rebuild on Linux. labels Aug 28, 2019
@andir andir merged commit ec3271c into NixOS:master Aug 28, 2019
@andir
Copy link
Member

andir commented Aug 28, 2019

Thanks!

andir added a commit to andir/nixpkgs that referenced this pull request Aug 28, 2019
@tokudan tokudan deleted the patch-1 branch August 28, 2019 16:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

10.rebuild-darwin: 1-10 This PR causes between 1 and 10 packages to rebuild on Darwin. 10.rebuild-linux: 1-10 This PR causes between 1 and 10 packages to rebuild on Linux.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants