Revision Date: | 2020-03-30 | Version: | 1 |
Title: | Security update for spamassassin (Important) |
Description: |
This update for spamassassin fixes the following issues:
Security issues fixed:
- CVE-2018-11805: Fixed an issue with delimiter handling in rule files related to is_regexp_valid() (bsc#1118987). - CVE-2020-1930: Fixed an issue with rule configuration (.cf) files which can be configured to run system commands (bsc#1162197). - CVE-2020-1931: Fixed an issue with rule configuration (.cf) files which can be configured to run system commands with warnings (bsc#1162200). Non-security issue fixed:
- Altering hash requires restarting loop (bsc#862963).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1118987 1162197 1162200 862963 CVE-2018-11805 CVE-2020-1930 CVE-2020-1931 SUSE-SU-2020:0811-1
|
Platform(s): | SUSE Linux Enterprise Desktop 15 SP1 SUSE Linux Enterprise High Performance Computing 15 SP1 SUSE Linux Enterprise Module for Development Tools 15 SP1 SUSE Linux Enterprise Server 15 SP1 SUSE Linux Enterprise Server for SAP Applications 15 SP1 SUSE Linux Enterprise Storage 6 SUSE Manager Proxy 4.0 SUSE Manager Server 4.0
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Module for Development Tools 15 SP1 is installed AND perl-Mail-SpamAssassin-Plugin-iXhash2-2.05-12.5.1 is installed
|