Updated spamassassin packages that fix a security issue are now available
for Red Hat Enterprise Linux 4 and 5.
This update has been rated as having moderate security impact by the Red
Hat Security Response Team.
SpamAssassin provides a way to reduce unsolicited commercial email (spam)
from incoming email.
Martin Krafft discovered a symlink issue in SpamAssassin that affects
certain non-default configurations. A local user could use this flaw to
create or overwrite files writable by the spamd process (CVE-2007-2873).
Users of SpamAssassin should upgrade to these updated packages which
contain a backported patch to correct this issue.
Note: This issue did not affect the version of SpamAssassin shipped with
Red Hat Enterprise Linux 3.
| Red Hat Desktop (v. 4) |
|
| SRPMS: |
spamassassin-3.1.9-1.el4.src.rpm
File outdated by: RHEA-2008:0738 |
31b18d4caccd9b0f7e87988ee6c29708 |
| |
| IA-32: |
spamassassin-3.1.9-1.el4.i386.rpm
File outdated by: RHEA-2008:0738 |
435ed3696068f6e8004f4c16cadc84a2 |
| |
| x86_64: |
spamassassin-3.1.9-1.el4.x86_64.rpm
File outdated by: RHEA-2008:0738 |
acd113e6312222a68398078ea8784646 |
| |
| Red Hat Enterprise Linux (v. 5 server) |
|
| SRPMS: |
spamassassin-3.1.9-1.el5.src.rpm
File outdated by: RHBA-2008:0319 |
39596bab79c822ea3131dbe012ce00a5 |
| |
| IA-32: |
spamassassin-3.1.9-1.el5.i386.rpm
File outdated by: RHBA-2008:0319 |
e858716f366a923d73bb06912535a6dd |
| |
| IA-64: |
spamassassin-3.1.9-1.el5.ia64.rpm
File outdated by: RHBA-2008:0319 |
dbf397331043033a9b40eebcc06e70eb |
| |
| PPC: |
spamassassin-3.1.9-1.el5.ppc.rpm
File outdated by: RHBA-2008:0319 |
4e6f8c3e81e45db7203d5c1f7d1ff5f7 |
| |
| s390x: |
spamassassin-3.1.9-1.el5.s390x.rpm
File outdated by: RHBA-2008:0319 |
d5fee42b11913d7db586d8f0bd4e4edd |
| |
| x86_64: |
spamassassin-3.1.9-1.el5.x86_64.rpm
File outdated by: RHBA-2008:0319 |
55a9dfafd70c8c6b02d3ef0c7cf40729 |
| |
| Red Hat Enterprise Linux AS (v. 4) |
|
| SRPMS: |
spamassassin-3.1.9-1.el4.src.rpm
File outdated by: RHEA-2008:0738 |
31b18d4caccd9b0f7e87988ee6c29708 |
| |
| IA-32: |
spamassassin-3.1.9-1.el4.i386.rpm
File outdated by: RHEA-2008:0738 |
435ed3696068f6e8004f4c16cadc84a2 |
| |
| IA-64: |
spamassassin-3.1.9-1.el4.ia64.rpm
File outdated by: RHEA-2008:0738 |
32288cf19c27d5e6167ba066c317fcd0 |
| |
| PPC: |
spamassassin-3.1.9-1.el4.ppc.rpm
File outdated by: RHEA-2008:0738 |
eeec5097fb0d9aeb25702eb46b18a22d |
| |
| s390: |
spamassassin-3.1.9-1.el4.s390.rpm
File outdated by: RHEA-2008:0738 |
c17f0c73613c08e4751b182bf261100a |
| |
| s390x: |
spamassassin-3.1.9-1.el4.s390x.rpm
File outdated by: RHEA-2008:0738 |
1c91d85342ec2809d3ae733be2f15883 |
| |
| x86_64: |
spamassassin-3.1.9-1.el4.x86_64.rpm
File outdated by: RHEA-2008:0738 |
acd113e6312222a68398078ea8784646 |
| |
| Red Hat Enterprise Linux Desktop (v. 5 client) |
|
| SRPMS: |
spamassassin-3.1.9-1.el5.src.rpm
File outdated by: RHBA-2008:0319 |
39596bab79c822ea3131dbe012ce00a5 |
| |
| IA-32: |
spamassassin-3.1.9-1.el5.i386.rpm
File outdated by: RHBA-2008:0319 |
e858716f366a923d73bb06912535a6dd |
| |
| x86_64: |
spamassassin-3.1.9-1.el5.x86_64.rpm
File outdated by: RHBA-2008:0319 |
55a9dfafd70c8c6b02d3ef0c7cf40729 |
| |
| Red Hat Enterprise Linux ES (v. 4) |
|
| SRPMS: |
spamassassin-3.1.9-1.el4.src.rpm
File outdated by: RHEA-2008:0738 |
31b18d4caccd9b0f7e87988ee6c29708 |
| |
| IA-32: |
spamassassin-3.1.9-1.el4.i386.rpm
File outdated by: RHEA-2008:0738 |
435ed3696068f6e8004f4c16cadc84a2 |
| |
| IA-64: |
spamassassin-3.1.9-1.el4.ia64.rpm
File outdated by: RHEA-2008:0738 |
32288cf19c27d5e6167ba066c317fcd0 |
| |
| x86_64: |
spamassassin-3.1.9-1.el4.x86_64.rpm
File outdated by: RHEA-2008:0738 |
acd113e6312222a68398078ea8784646 |
| |
| Red Hat Enterprise Linux WS (v. 4) |
|
| SRPMS: |
spamassassin-3.1.9-1.el4.src.rpm
File outdated by: RHEA-2008:0738 |
31b18d4caccd9b0f7e87988ee6c29708 |
| |
| IA-32: |
spamassassin-3.1.9-1.el4.i386.rpm
File outdated by: RHEA-2008:0738 |
435ed3696068f6e8004f4c16cadc84a2 |
| |
| IA-64: |
spamassassin-3.1.9-1.el4.ia64.rpm
File outdated by: RHEA-2008:0738 |
32288cf19c27d5e6167ba066c317fcd0 |
| |
| x86_64: |
spamassassin-3.1.9-1.el4.x86_64.rpm
File outdated by: RHEA-2008:0738 |
acd113e6312222a68398078ea8784646 |
| |
(The unlinked packages above are only available from the Red Hat Network)
|
243455 - CVE-2007-2873 spamassassin symlink attack