UbuntuUpdates.org

Package "spamc"

Name: spamc

Description:

Client for SpamAssassin spam filtering daemon

Latest version: 3.4.4-1ubuntu1.2
Release: focal (20.04)
Level: updates
Repository: main
Head package: spamassassin
Homepage: https://www.spamassassin.org/

Links


Download "spamc"


Other versions of "spamc" in Focal

Repository Area Version
base main 3.4.4-1ubuntu1
security main 3.4.4-1ubuntu1.1

Changelog

Version: 3.4.4-1ubuntu1.2 2023-04-11 20:06:52 UTC

  spamassassin (3.4.4-1ubuntu1.2) focal; urgency=medium

  * d/p/fix-mkpath-untainted.patch: fix spamd running with virtual-config-dir
    mkdir error (LP: #1799185)

 -- Mitchell Dzurick <email address hidden> Fri, 24 Mar 2023 09:36:49 -0700

Source diff to previous version
1799185 spamd running with virtual-config-dir mkdir error

Version: 3.4.4-1ubuntu1.1 2021-04-01 15:06:17 UTC

  spamassassin (3.4.4-1ubuntu1.1) focal-security; urgency=medium

  * SECURITY UPDATE: OS Command Injection in cf file parsing
    - debian/patches/CVE-2020-1946.patch: fix header rule parsing in
      lib/Mail/SpamAssassin/Conf/Parser.pm.
    - CVE-2020-1946

 -- Marc Deslauriers <email address hidden> Mon, 29 Mar 2021 12:54:59 -0400

CVE-2020-1946 In Apache SpamAssassin before 3.4.5, malicious rule configuration (.cf) files can be configured to run system commands without any output or errors.



About   -   Send Feedback to @ubuntu_updates