Bug 572119
Summary: | SpamAssassin Mail Filter: Arbitrary shell command injection (privilege escalation) [Fedora all] | ||
---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Jan Lieskovsky <jlieskov> |
Component: | spamass-milter | Assignee: | Paul Howarth <paul> |
Status: | CLOSED ERRATA | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
Severity: | urgent | Docs Contact: | |
Priority: | urgent | ||
Version: | rawhide | CC: | paul |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://fedoraproject.org/wiki/Security/TrackingBugs | ||
Whiteboard: | |||
Fixed In Version: | spamass-milter-0.3.1-18.fc14 | Doc Type: | Bug Fix |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2010-04-09 08:44:36 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | |||
Bug Blocks: | 572117 |
Description
Jan Lieskovsky
2010-03-10 11:07:06 UTC
spamass-milter-0.3.1-17.fc13 has been submitted as an update for Fedora 13. http://admin.fedoraproject.org/updates/spamass-milter-0.3.1-17.fc13 spamass-milter-0.3.1-17.fc12 has been submitted as an update for Fedora 12. http://admin.fedoraproject.org/updates/spamass-milter-0.3.1-17.fc12 spamass-milter-0.3.1-17.fc11 has been submitted as an update for Fedora 11. http://admin.fedoraproject.org/updates/spamass-milter-0.3.1-17.fc11 spamass-milter-0.3.1-17.el5 has been submitted as an update for Fedora EPEL 5. http://admin.fedoraproject.org/updates/spamass-milter-0.3.1-17.el5 spamass-milter-0.3.1-17.el4 has been submitted as an update for Fedora EPEL 4. http://admin.fedoraproject.org/updates/spamass-milter-0.3.1-17.el4 spamass-milter-0.3.1-18.el4 has been pushed to the Fedora EPEL 4 stable repository. If problems still persist, please make note of it in this bug report. spamass-milter-0.3.1-18.el5 has been pushed to the Fedora EPEL 5 stable repository. If problems still persist, please make note of it in this bug report. spamass-milter-0.3.1-18.fc12 has been pushed to the Fedora 12 stable repository. If problems still persist, please make note of it in this bug report. spamass-milter-0.3.1-18.fc11 has been pushed to the Fedora 11 stable repository. If problems still persist, please make note of it in this bug report. spamass-milter-0.3.1-18.fc13 has been pushed to the Fedora 13 stable repository. If problems still persist, please make note of it in this bug report. This issue is now resolved in all supported Fedora and EPEL releases, by spamass-milter-0.3.1-18.*. The fix is based on upstream's proposed patch from https://savannah.nongnu.org/bugs/?29136 but this patch has not been committed to upstream CVS, let alone becom epart of a new upstream release. However, I have tested it quite extensively myself and it is also included in Debian's update for this issue. |