SpamAssassin Local Symlink Attack And Denial of Service Vulnerability

SpamAssassin is prone to a remote denial-of-service vulnerability because the application creates files in an insecure manner.

An attacker can exploit this issue to cause a denial-of-service condition.

Versions prior to SpamAssassin 3.2.1 are vulnerable to this issue.


 

Privacy Statement
Copyright 2010, SecurityFocus