UbuntuUpdates.org

Package "spamassassin"

Name: spamassassin

Description:

Perl-based spam filter using text analysis

Latest version: 3.4.4-1ubuntu1.2
Release: focal (20.04)
Level: updates
Repository: main
Homepage: https://www.spamassassin.org/

Links


Download "spamassassin"


Other versions of "spamassassin" in Focal

Repository Area Version
base main 3.4.4-1ubuntu1
security main 3.4.4-1ubuntu1.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 3.4.4-1ubuntu1.2 2023-04-11 20:06:52 UTC

  spamassassin (3.4.4-1ubuntu1.2) focal; urgency=medium

  * d/p/fix-mkpath-untainted.patch: fix spamd running with virtual-config-dir
    mkdir error (LP: #1799185)

 -- Mitchell Dzurick <email address hidden> Fri, 24 Mar 2023 09:36:49 -0700

Source diff to previous version
1799185 spamd running with virtual-config-dir mkdir error

Version: 3.4.4-1ubuntu1.1 2021-04-01 15:06:17 UTC

  spamassassin (3.4.4-1ubuntu1.1) focal-security; urgency=medium

  * SECURITY UPDATE: OS Command Injection in cf file parsing
    - debian/patches/CVE-2020-1946.patch: fix header rule parsing in
      lib/Mail/SpamAssassin/Conf/Parser.pm.
    - CVE-2020-1946

 -- Marc Deslauriers <email address hidden> Mon, 29 Mar 2021 12:54:59 -0400

CVE-2020-1946 In Apache SpamAssassin before 3.4.5, malicious rule configuration (.cf) files can be configured to run system commands without any output or errors.



About   -   Send Feedback to @ubuntu_updates