Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Red Hat Local Security Checks >> RHSA-2004-451: spamassassin


Vulnerability Assessment Details

RHSA-2004-451: spamassassin

Vulnerability Assessment Summary
Check for the version of the spamassassin packages

Detailed Explanation for this Vulnerability Assessment


An updated spamassassin package that fixes a denial of service bug when
parsing malformed messages is now available.

SpamAssassin provides a way to reduce unsolicited commercial email (SPAM)
from incoming email.

A denial of service bug has been found in SpamAssassin versions below 2.64.
A malicious attacker could construct a message in such a way that would
cause spamassassin to stop responding, potentially preventing the delivery
or filtering of email. The Common Vulnerabilities and Exposures project
(cve.mitre.org) has assigned the name CVE-2004-0796 to this issue.

Users of SpamAssassin should update to these updated packages which contain
a backported patch and is not vulnerable to this issue.




Solution : http://rhn.redhat.com/errata/RHSA-2004-451.html
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

SHORETEL LOT 8X IP560 IP530 VOIP S6 Black/Silver Phones See Description Workin
$224.99
SHORETEL LOT 8X IP560  IP530 VOIP S6 Black/Silver Phones See Description Workin pictureNew Linksys Sipura SPA-2100 VoiP Telephone Adapter
$75.95
New Linksys Sipura SPA-2100 VoiP Telephone Adapter pictureCisco Linksys VoIP IP Phone Cisco SPA 942 Lines w/ PS
$115.0
Cisco Linksys VoIP IP Phone Cisco  SPA 942 Lines w/ PS pictureHandy 3.5mm Microphone for PC Computer Laptop Notebook Skype Voip DQUS
$2.57
Handy 3.5mm Microphone for PC Computer Laptop Notebook Skype Voip DQUS picture


Discussions

No Discussions have been posted on this vulnerability.