Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.58091
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2007:049 (spamassassin)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to spamassassin
announced via advisory MDKSA-2007:049.

A bug in the way that SpamAssassin processes HTML emails containing
URIs was discovered in versions 3.1.x. A carefully crafted mail
message could make SpamAssassin consume significant amounts of CPU
resources that could delay or prevent the delivery of mail if a
number of these messages were sent at once.

SpamAssassin has been upgraded to version 3.1.8 to correct this
problem, and other upstream bugs. In addition, an invalid path setting
in local.cf for the auto_whitelist_path has been fixed for Mandriva
2007.0.

Affected: 2007.0, Corporate 4.0

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2007:049
http://qa.mandriva.com/show_bug.cgi?id=27424

Risk factor : Medium

CVSS Score:
4.3

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2007-0451
1017666
http://www.securitytracker.com/id?1017666
22584
http://www.securityfocus.com/bid/22584
24197
http://secunia.com/advisories/24197
24200
http://secunia.com/advisories/24200
24250
http://secunia.com/advisories/24250
24256
http://secunia.com/advisories/24256
24265
http://secunia.com/advisories/24265
24307
http://secunia.com/advisories/24307
24889
http://secunia.com/advisories/24889
33207
http://osvdb.org/33207
ADV-2007-0628
http://www.vupen.com/english/advisories/2007/0628
FEDORA-2007-241
http://fedoranews.org/cms/node/2659
FEDORA-2007-242
http://fedoranews.org/cms/node/2657
GLSA-200703-02
http://security.gentoo.org/glsa/glsa-200703-02.xml
MDKSA-2007:049
http://www.mandriva.com/security/advisories?name=MDKSA-2007:049
RHSA-2007:0074
http://rhn.redhat.com/errata/RHSA-2007-0074.html
RHSA-2007:0075
http://www.redhat.com/support/errata/RHSA-2007-0075.html
SUSE-SR:2007:006
http://www.novell.com/linux/security/advisories/2007_6_sr.html
http://spamassassin.apache.org/advisories/cve-2007-0451.txt
http://svn.apache.org/repos/asf/spamassassin/branches/3.1/build/announcements/3.1.8.txt
https://issues.rpath.com/browse/RPL-1073
oval:org.mitre.oval:def:10018
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10018
spamassassin-url-dos(32536)
https://exchange.xforce.ibmcloud.com/vulnerabilities/32536
CopyrightCopyright (c) 2007 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.