DESCRIPTION
Cyrus-SASL is an open-source implementation of SASL, the "Simple
Authentication and Security Layer", which is an useful API for
adding
authentication, authorization, and security to network protocols.
Examples of applications linked to sasl include sendmail, OpenLDAP
and several mail clients.
Kari Hurtta reported[1] a format string bug[2] in one of the logging
functions that could be exploited by an attacker to gain access to a
machine or to acquire higher privileges.
ADDITIONAL INSTRUCTIONS
Users of Conectiva Linux version 6.0 or higher may use apt to perform
upgrades of RPM packages:
- add the following line to /etc/apt/sources.list if it is not there yet
(you may also use linuxconf to do this):