Skip to content
Snippets Groups Projects
  1. Feb 12, 2025
  2. Aug 19, 2022
  3. Jan 17, 2022
  4. Jun 03, 2021
  5. Mar 17, 2020
  6. Oct 24, 2019
  7. Oct 22, 2019
  8. Aug 28, 2019
    • Timo Sirainen's avatar
      lib-managesieve: Make sure str_unescape() won't be writing past allocated memory · 10c5cbe8
      Timo Sirainen authored
      The previous commit should already prevent this, but this makes sure it
      can't become broken in the future either. It makes the performance a tiny
      bit worse, but that's not practically noticeable.
      10c5cbe8
    • Timo Sirainen's avatar
      lib-managesieve: Don't accept strings with NULs · 16e047c5
      Timo Sirainen authored
      ManageSieve doesn't allow NULs in strings.
      
      This fixes a bug with unescaping a string with NULs: str_unescape() could
      have been called for memory that points outside the allocated string,
      causing heap corruption. This could cause crashes or theoretically even
      result in remote code execution exploit.
      
      Found by Nick Roessler and Rafi Rubin
      16e047c5
  9. Apr 25, 2018
  10. Mar 02, 2018
  11. Mar 01, 2018
  12. Jan 01, 2018
  13. Dec 15, 2017
  14. Nov 25, 2017
  15. Nov 18, 2017
  16. Nov 02, 2017
  17. Jan 01, 2017
  18. Aug 25, 2016
  19. Aug 20, 2016
  20. Jul 14, 2016
  21. Jan 03, 2016
  22. Jan 08, 2015
  23. Oct 19, 2014
  24. Jan 01, 2014
  25. Apr 06, 2013
  26. Aug 28, 2012
  27. Aug 12, 2012
  28. Jul 13, 2012
  29. Jul 12, 2012
  30. Apr 24, 2012
  31. Jan 28, 2012
  32. Jan 22, 2012
    • Stephan Bosch's avatar
      ManageSieve: added support for reading quoted and literal strings as a stream.... · 7f428312
      Stephan Bosch authored
      ManageSieve: added support for reading quoted and literal strings as a stream. Fixes support for handing large SASL responses.
      Also resolves long-standing FIXME regarding the second parameter of PUTSCRIPT: it can now be a quoted string.
      Includes a few small changes in the login daemon that were done in the dovecot equivalents before.
      7f428312
  33. Jan 07, 2012
Loading

Consent

On this website, we use the web analytics service Matomo to analyze and review the use of our website. Through the collected statistics, we can improve our offerings and make them more appealing for you. Here, you can decide whether to allow us to process your data and set corresponding cookies for these purposes, in addition to technically necessary cookies. Further information on data protection—especially regarding "cookies" and "Matomo"—can be found in our privacy policy. You can withdraw your consent at any time.