Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2007-2873
Disclosure Date: June 11, 2007 (last updated October 04, 2023)
SpamAssassin 3.1.x, 3.2.0, and 3.2.1 before 20070611, when running as root in unusual configurations using vpopmail or virtual users, allows local users to cause a denial of service (corrupt arbitrary files) via a symlink attack on a file that is used by spamd.
0
Attacker Value
Unknown
CVE-2007-0451
Disclosure Date: February 16, 2007 (last updated October 04, 2023)
Apache SpamAssassin before 3.1.8 allows remote attackers to cause a denial of service via long URLs in malformed HTML, which triggers "massive memory usage."
0
Attacker Value
Unknown
CVE-2006-2447
Disclosure Date: June 06, 2006 (last updated October 04, 2023)
SpamAssassin before 3.1.3, when running with vpopmail and the paranoid (-P) switch, allows remote attackers to execute arbitrary commands via a crafted message that is not properly handled when invoking spamd with the virtual pop username.
0