Gentoo Security Advisory GLSA 200604-09 (cyrus-sasl)

Summary
The remote host is missing updates announced in advisory GLSA 200604-09.
Solution
All Cyrus-SASL users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose '>=dev-libs/cyrus-sasl-2.1.21-r2' http://www.securityspace.com/smysecure/catid.html?in=GLSA%20200604-09 http://bugs.gentoo.org/show_bug.cgi?id=129523
Insight
Cyrus-SASL contains a vulnerability in the DIGEST-MD5 process that could lead to a Denial of Service.