Wrong security audit for mail/postfix ?

2015-05-11 Thread Cristiano Deana
Hi, this morning I got for my mailservers # pkg audit postfix-2.11.4,1 is vulnerable: postfix -- plaintext command injection with SMTP over TLS CVE: CVE-2011-0411 WWW: http://vuxml.FreeBSD.org/freebsd/14a6f516-502f-11e0-b448-bbfa2731f9c7.html postfix-2.11.4,1 is vulnerable: Postfix -- memory co

Re: Wrong security audit for mail/postfix ?

2015-05-11 Thread olli hauer
On May 11, 2015 9:38:46 AM CEST, Cristiano Deana wrote: > Hi, > > this morning I got for my mailservers > > # pkg audit > postfix-2.11.4,1 is vulnerable: > postfix -- plaintext command injection with SMTP over TLS > CVE: CVE-2011-0411 > WWW: > http://vuxml.FreeBSD.org/freebsd/14a6f516-502f-11e

Re: Wrong security audit for mail/postfix ?

2015-05-11 Thread Cristiano Deana
On Mon, May 11, 2015 at 10:35 AM, olli hauer wrote: Hi, > Hi Cristiano, > > this should be fixed.meanwhile. > > Please run the command > # pkg audit -F Confirmed, fixed. Thanks. -- Cris, member of G.U.F.I Italian FreeBSD User Group http://www.gufi.org/