First published: Tue Nov 13 2018(Updated: )
USN-3811-1 fixed a vulnerability in SpamAssassin. This update provides the corresponding update for Ubuntu 12.04 ESM. Original advisory details: It was discovered that SpamAssassin incorrectly handled certain unclosed tags in emails. A remote attacker could possibly use this issue to cause a denial of service. (CVE-2017-15705)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/spamassassin | <3.3.2-2ubuntu1.2 | 3.3.2-2ubuntu1.2 |
Ubuntu OpenSSH Client | =12.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
USN-3811-2 addresses a critical vulnerability that could allow a remote attacker to exploit SpamAssassin.
To fix USN-3811-2, update SpamAssassin to version 3.3.2-2ubuntu1.2 on Ubuntu 12.04 ESM.
USN-3811-2 affects SpamAssassin version 3.3.2-2ubuntu1.2 on Ubuntu 12.04.
USN-3811-2 describes an improper handling of unclosed tags in SpamAssassin emails.
Any remote attacker leveraging this vulnerability could potentially impact users of SpamAssassin.