![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.59473 |
Category: | Fedora Local Security Checks |
Title: | Fedora Core 6 FEDORA-2007-241 (spamassassin) |
Summary: | NOSUMMARY |
Description: | Description: The remote host is missing an update to spamassassin announced via advisory FEDORA-2007-241. SpamAssassin provides you with a way to reduce if not completely eliminate Unsolicited Commercial Email (SPAM) from your incoming email. It can be invoked by a MDA such as sendmail or postfix, or can be called from a procmail script, .forward file, etc. It uses a genetic-algorithm evolved scoring system to identify messages which look spammy, then adds headers to the message so they can be filtered by the user's mail reading software. This distribution includes the spamd/spamc components which create a server that considerably speeds processing of mail. To enable spamassassin, if you are receiving mail locally, simply add this line to your ~ /.procmailrc: INCLUDERC=/etc/mail/spamassassin/spamassassin-default.rc To filter spam for all users, add that line to /etc/procmailrc (creating if necessary). Update Information: This upgrades to version 3.1.8, which fixes some bugs and CVE-2007-0451 Malformed HTML Denial of Service. * Tue Feb 13 2007 Warren Togami 3.1.8-1 - 3.1.8 CVE-2007-0451 * Tue Feb 13 2007 Warren Togami 3.1.7-9 - silence sa-update cron script * Wed Feb 7 2007 Warren Togami 3.1.7-8 - only restart spamd if necessary after sa-update (#227756) * Wed Feb 7 2007 Warren Togami 3.1.7-7 - requires gnupg (#227738) * Sun Jan 28 2007 Warren Togami 3.1.7-6 - explicit requires on perl(HTTP::Date) and perl(LWP::UserAgent) (Bug #193100) Solution: Apply the appropriate updates. This update can be downloaded from: http://download.fedora.redhat.com/pub/fedora/linux/core/updates/6/ This update can be installed with the 'yum' update program. Use 'yum update package-name' at the command line. For more information, refer to 'Managing Software with yum,' available at http://fedora.redhat.com/docs/yum/. http://www.securityspace.com/smysecure/catid.html?in=FEDORA-2007-241 Risk factor : Medium CVSS Score: 4.3 |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2007-0451 1017666 http://www.securitytracker.com/id?1017666 22584 http://www.securityfocus.com/bid/22584 24197 http://secunia.com/advisories/24197 24200 http://secunia.com/advisories/24200 24250 http://secunia.com/advisories/24250 24256 http://secunia.com/advisories/24256 24265 http://secunia.com/advisories/24265 24307 http://secunia.com/advisories/24307 24889 http://secunia.com/advisories/24889 33207 http://osvdb.org/33207 ADV-2007-0628 http://www.vupen.com/english/advisories/2007/0628 FEDORA-2007-241 http://fedoranews.org/cms/node/2659 FEDORA-2007-242 http://fedoranews.org/cms/node/2657 GLSA-200703-02 http://security.gentoo.org/glsa/glsa-200703-02.xml MDKSA-2007:049 http://www.mandriva.com/security/advisories?name=MDKSA-2007:049 RHSA-2007:0074 http://rhn.redhat.com/errata/RHSA-2007-0074.html RHSA-2007:0075 http://www.redhat.com/support/errata/RHSA-2007-0075.html SUSE-SR:2007:006 http://www.novell.com/linux/security/advisories/2007_6_sr.html http://spamassassin.apache.org/advisories/cve-2007-0451.txt http://svn.apache.org/repos/asf/spamassassin/branches/3.1/build/announcements/3.1.8.txt https://issues.rpath.com/browse/RPL-1073 oval:org.mitre.oval:def:10018 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10018 spamassassin-url-dos(32536) https://exchange.xforce.ibmcloud.com/vulnerabilities/32536 |
Copyright | Copyright (c) 2007 E-Soft Inc. http://www.securityspace.com |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |