ELSA-2018-2916

ELSA-2018-2916 - spamassassin security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2018-10-11

Description


[3.4.0-4]
- Add missing Requires for perl(XSLoader) and perl(ExtUtils::MakeMaker),
- which are no longer auto-generated due to a (expected) change in rpm-build
- Related: rhbz#1632998

[3.4.0-3]
- Fix CVE-2018-11781 - Local user code injection in the meta rule syntax
- Fix CVE-2017-15705 - Certain unclosed tags in crafted emails allow for
- scan timeouts and resulting denial of service
- Resolves: rhbz#1632998


Related CVEs


CVE-2017-15705
CVE-2018-11781

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) spamassassin-3.4.0-4.el7_5.src.rpm9f664bc84315fe94b1493f7177277df8a5b31cb059050fa7a852af04d92ebe52ELSA-2020-3973ol7_aarch64_latest
spamassassin-3.4.0-4.el7_5.src.rpm9f664bc84315fe94b1493f7177277df8a5b31cb059050fa7a852af04d92ebe52ELSA-2020-3973ol7_aarch64_u7_base
spamassassin-3.4.0-4.el7_5.aarch64.rpmd758d6b55d9d0eea818be3c0516cfcc2f1858ca99d2a127c7cc744a95f44b793ELSA-2020-3973ol7_aarch64_latest
spamassassin-3.4.0-4.el7_5.aarch64.rpmd758d6b55d9d0eea818be3c0516cfcc2f1858ca99d2a127c7cc744a95f44b793ELSA-2020-3973ol7_aarch64_u7_base
Oracle Linux 7 (x86_64) spamassassin-3.4.0-4.el7_5.src.rpm9f664bc84315fe94b1493f7177277df8a5b31cb059050fa7a852af04d92ebe52ELSA-2020-3973ol7_x86_64_latest
spamassassin-3.4.0-4.el7_5.src.rpm9f664bc84315fe94b1493f7177277df8a5b31cb059050fa7a852af04d92ebe52ELSA-2020-3973ol7_x86_64_u5_patch
spamassassin-3.4.0-4.el7_5.src.rpm9f664bc84315fe94b1493f7177277df8a5b31cb059050fa7a852af04d92ebe52ELSA-2020-3973ol7_x86_64_u7_base
spamassassin-3.4.0-4.el7_5.x86_64.rpmeba8fd71b9dc280364cd3219964752d87e9212aac7b2e9e9fad3523cd9df6af7ELSA-2020-3973ol7_x86_64_latest
spamassassin-3.4.0-4.el7_5.x86_64.rpmeba8fd71b9dc280364cd3219964752d87e9212aac7b2e9e9fad3523cd9df6af7ELSA-2020-3973ol7_x86_64_u5_patch
spamassassin-3.4.0-4.el7_5.x86_64.rpmeba8fd71b9dc280364cd3219964752d87e9212aac7b2e9e9fad3523cd9df6af7ELSA-2020-3973ol7_x86_64_u7_base



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete