diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 119887a30af0..17f9bcf4cc1c 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -34,6 +34,44 @@ Note: Please add new entries to the beginning of this file. --> + + postfix -- memory corruption vulnerability + + + postfix + postfix-base + 2.8.*,12.8.3,1 + 2.7.*,12.7.4,1 + 2.6.*,12.6.10,1 + 2.5.*,22.5.13,2 + 2.4.16,1 + + + postfix-current + postfix-current-base + 2.9.20110501,4 + + + + +

The Postfix SMTP server has a memory corruption error, + when the Cyrus SASL library is used with authentication + mechanisms other than PLAIN and LOGIN (ANONYMOUS is not + affected, but should not be used for other reasons). + This memory corruption is known to result in a program + crash (SIGSEV).

+ +
+ + CVE-2011-1720 + http://www.postfix.org/CVE-2011-1720.html + + + 2011-05-09 + 2011-05-09 + +
+ mozilla -- multiple vulnerabilities