Vulnerability Bulletins

DSA-3368 cyrus-sasl2 - security update

   
Affected software Debian
 
It was discovered that cyrus-sasl2, a library implementing the SimpleAuthentication and Security Layer, does not properly handle certaininvalid password salts. A remote attacker can take advantage of thisflaw to cause a denial of service.

More info:

https://www.debian.org/security/2015/dsa-3368