SpamAssassin: Long URI Denial of service SpamAssassin is vulnerable to a Denial of Service attack. spamassassin 2007-03-02 2007-03-02 166969 remote 3.1.8 3.1.8

SpamAssassin is an extensible email filter used to identify junk email.

SpamAssassin does not correctly handle very long URIs when scanning emails.

An attacker could cause SpamAssassin to consume large amounts of CPU and memory resources by sending one or more emails containing very long URIs.

There is no known workaround at this time.

All SpamAssassin users should upgrade to the latest version.

# emerge --sync # emerge --ask --oneshot --verbose ">=mail-filter/spamassassin-3.1.8"
CVE-2007-0451 vorlon vorlon DerCorny