Publishing details

Changelog

evolution-data-server (3.18.5-1ubuntu1.3) xenial-security; urgency=medium

  * SECURITY UPDATE: STARTTLS response injection
    - debian/patches/CVE-2020-14928-1.patch: truncate cached data in
      camel/camel-stream-buffer.c, camel/camel-stream-buffer.h,
      camel/providers/pop3/camel-pop3-store.c,
      camel/providers/pop3/camel-pop3-stream.c,
      camel/providers/pop3/camel-pop3-stream.h,
      camel/providers/smtp/camel-smtp-transport.c.
    - debian/patches/CVE-2020-14928-2.patch: rename function in
      camel/camel-stream-buffer.c, camel/camel-stream-buffer.h,
      camel/providers/pop3/camel-pop3-store.c,
      camel/providers/pop3/camel-pop3-stream.c,
      camel/providers/pop3/camel-pop3-stream.h,
      camel/providers/smtp/camel-smtp-transport.c.
    - debian/libcamel-1.2-54.symbols: added new symbol.
    - CVE-2020-14928

 -- Marc Deslauriers <email address hidden>  Wed, 08 Jul 2020 09:49:50 -0400

Available diffs

Builds

Built packages

Package files