Oval Definition:oval:org.opensuse.security:def:5569
Revision Date:2020-12-02Version:1
Title:Security update for spamassassin (Important)
Description:

This update for spamassassin fixes the following issues:

Security issues fixed:

- CVE-2018-11805: Fixed an issue with delimiter handling in rule files related to is_regexp_valid() (bsc#1118987). - CVE-2020-1930: Fixed an issue with rule configuration (.cf) files which can be configured to run system commands (bsc#1162197). - CVE-2020-1931: Fixed an issue with rule configuration (.cf) files which can be configured to run system commands with warnings (bsc#1162200).

Non-security issue fixed:

- Altering hash requires restarting loop (bsc#862963).
Family:unixClass:patch
Status:Reference(s):1013708
1013712
1013893
1015171
1118987
1162197
1162200
862963
CVE-2008-3825
CVE-2009-0035
CVE-2009-1384
CVE-2009-2625
CVE-2009-3560
CVE-2009-3720
CVE-2010-2494
CVE-2011-0461
CVE-2011-2199
CVE-2011-3177
CVE-2011-3177
CVE-2012-0876
CVE-2012-1147
CVE-2012-1148
CVE-2012-3386
CVE-2012-5468
CVE-2013-2126
CVE-2013-2127
CVE-2013-6370
CVE-2013-6371
CVE-2015-1283
CVE-2015-8370
CVE-2016-0718
CVE-2016-2851
CVE-2016-6354
CVE-2016-9797
CVE-2016-9798
CVE-2016-9802
CVE-2016-9917
CVE-2018-11805
CVE-2020-1930
CVE-2020-1931
SUSE-SU-2019:1353-1
SUSE-SU-2020:0813-1
Platform(s):openSUSE 13.1
openSUSE 13.1 NonFree
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise for SAP 12
SUSE Linux Enterprise for SAP 12 SP1
SUSE Linux Enterprise High Availability 12 SP2
SUSE Linux Enterprise High Availability 12 SP5
SUSE Linux Enterprise High Performance Computing 12 SP5
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Real Time Extension 12 SP2
SUSE Linux Enterprise Server 11
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP2-LTSS
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12-LTSS
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
SUSE Linux Enterprise Server for SAP Applications 12 SP1
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Server for VMWare 11 SP2
SUSE Linux Enterprise Software Development Kit 11 SP2
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Software Development Kit 12 SP1
SUSE Linux Enterprise Software Development Kit 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP4
SUSE Linux Enterprise Workstation Extension 12
SUSE Linux Enterprise Workstation Extension 12 SP1
SUSE Linux Enterprise Workstation Extension 12 SP2
SUSE Linux Enterprise Workstation Extension 12 SP3
SUSE Linux Enterprise Workstation Extension 15
SUSE OpenStack Cloud 5
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND kvm-1.4.2-32.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND wdiff-1.2.1-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • alsa-1.0.27.2-11 is installed
  • OR libasound2-1.0.27.2-11 is installed
  • OR libasound2-32bit-1.0.27.2-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • aaa_base-13.2+git20140911.61c1681-36 is installed
  • OR aaa_base-extras-13.2+git20140911.61c1681-36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • aaa_base-13.2+git20140911.61c1681-38.8 is installed
  • OR aaa_base-extras-13.2+git20140911.61c1681-38.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 is installed
  • AND Package Information
  • kgraft-patch-3_12_48-52_27-default-5-2.2 is installed
  • OR kgraft-patch-3_12_48-52_27-xen-5-2.2 is installed
  • OR kgraft-patch-SLE12_Update_8-5-2.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 SP1 is installed
  • AND sudo-1.8.10p3-2.19.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP2 is installed
  • AND fence-agents-4.0.22+git.1455008135.15c5e92-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP5 is installed
  • AND Package Information
  • cluster-md-kmp-default-4.12.14-120 is installed
  • OR dlm-kmp-default-4.12.14-120 is installed
  • OR gfs2-kmp-default-4.12.14-120 is installed
  • OR ocfs2-kmp-default-4.12.14-120 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Performance Computing 12 SP5 is installed
  • AND ft2demos-2.6.3-7.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 12 is installed
  • AND Package Information
  • libopenssl0_9_8-0.9.8j-59 is installed
  • OR libopenssl0_9_8-32bit-0.9.8j-59 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 12 is installed
  • AND python-requests-2.3.0-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 12 is installed
  • AND Package Information
  • apache2-mod_php7-7.0.7-15 is installed
  • OR php7-7.0.7-15 is installed
  • OR php7-bcmath-7.0.7-15 is installed
  • OR php7-bz2-7.0.7-15 is installed
  • OR php7-calendar-7.0.7-15 is installed
  • OR php7-ctype-7.0.7-15 is installed
  • OR php7-curl-7.0.7-15 is installed
  • OR php7-dba-7.0.7-15 is installed
  • OR php7-dom-7.0.7-15 is installed
  • OR php7-enchant-7.0.7-15 is installed
  • OR php7-exif-7.0.7-15 is installed
  • OR php7-fastcgi-7.0.7-15 is installed
  • OR php7-fileinfo-7.0.7-15 is installed
  • OR php7-fpm-7.0.7-15 is installed
  • OR php7-ftp-7.0.7-15 is installed
  • OR php7-gd-7.0.7-15 is installed
  • OR php7-gettext-7.0.7-15 is installed
  • OR php7-gmp-7.0.7-15 is installed
  • OR php7-iconv-7.0.7-15 is installed
  • OR php7-imap-7.0.7-15 is installed
  • OR php7-intl-7.0.7-15 is installed
  • OR php7-json-7.0.7-15 is installed
  • OR php7-ldap-7.0.7-15 is installed
  • OR php7-mbstring-7.0.7-15 is installed
  • OR php7-mcrypt-7.0.7-15 is installed
  • OR php7-mysql-7.0.7-15 is installed
  • OR php7-odbc-7.0.7-15 is installed
  • OR php7-opcache-7.0.7-15 is installed
  • OR php7-openssl-7.0.7-15 is installed
  • OR php7-pcntl-7.0.7-15 is installed
  • OR php7-pdo-7.0.7-15 is installed
  • OR php7-pear-7.0.7-15 is installed
  • OR php7-pear-Archive_Tar-7.0.7-15 is installed
  • OR php7-pgsql-7.0.7-15 is installed
  • OR php7-phar-7.0.7-15 is installed
  • OR php7-posix-7.0.7-15 is installed
  • OR php7-pspell-7.0.7-15 is installed
  • OR php7-shmop-7.0.7-15 is installed
  • OR php7-snmp-7.0.7-15 is installed
  • OR php7-soap-7.0.7-15 is installed
  • OR php7-sockets-7.0.7-15 is installed
  • OR php7-sqlite-7.0.7-15 is installed
  • OR php7-sysvmsg-7.0.7-15 is installed
  • OR php7-sysvsem-7.0.7-15 is installed
  • OR php7-sysvshm-7.0.7-15 is installed
  • OR php7-tokenizer-7.0.7-15 is installed
  • OR php7-wddx-7.0.7-15 is installed
  • OR php7-xmlreader-7.0.7-15 is installed
  • OR php7-xmlrpc-7.0.7-15 is installed
  • OR php7-xmlwriter-7.0.7-15 is installed
  • OR php7-xsl-7.0.7-15 is installed
  • OR php7-zip-7.0.7-15 is installed
  • OR php7-zlib-7.0.7-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Real Time Extension 12 SP2 is installed
  • AND Package Information
  • cluster-md-kmp-rt-4.4.88-18.1 is installed
  • OR cluster-network-kmp-rt-4.4.88-18.1 is installed
  • OR dlm-kmp-rt-4.4.88-18.1 is installed
  • OR gfs2-kmp-rt-4.4.88-18.1 is installed
  • OR kernel-devel-rt-4.4.88-18.1 is installed
  • OR kernel-rt-4.4.88-18.1 is installed
  • OR kernel-rt-base-4.4.88-18.1 is installed
  • OR kernel-rt-devel-4.4.88-18.1 is installed
  • OR kernel-rt_debug-4.4.88-18.1 is installed
  • OR kernel-rt_debug-devel-4.4.88-18.1 is installed
  • OR kernel-source-rt-4.4.88-18.1 is installed
  • OR kernel-syms-rt-4.4.88-18.1 is installed
  • OR ocfs2-kmp-rt-4.4.88-18.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 is installed
  • AND Package Information
  • apache2-2.2.10-2.23.22.1 is installed
  • OR apache2-doc-2.2.10-2.23.22.1 is installed
  • OR apache2-example-pages-2.2.10-2.23.22.1 is installed
  • OR apache2-prefork-2.2.10-2.23.22.1 is installed
  • OR apache2-utils-2.2.10-2.23.22.1 is installed
  • OR apache2-worker-2.2.10-2.23.22.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND
  • libicu-4.0-7.26.15 is installed
  • OR libicu-32bit-4.0-7.26.15 is installed
  • OR libicu-doc-4.0-7.26.15 is installed
  • OR libicu-x86-4.0-7.26.15 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server for VMWare 11 SP2 is installed
  • AND
  • libicu-4.0-7.26.15 is installed
  • OR libicu-32bit-4.0-7.26.15 is installed
  • OR libicu-doc-4.0-7.26.15 is installed
  • OR libicu-x86-4.0-7.26.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND clamav-0.97.3-0.2.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP2-LTSS is installed
  • AND Package Information
  • MozillaFirefox-45.4.0esr-52.1 is installed
  • OR MozillaFirefox-translations-45.4.0esr-52.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND Package Information
  • cups-1.3.9-8.46.46.1 is installed
  • OR cups-client-1.3.9-8.46.46.1 is installed
  • OR cups-libs-1.3.9-8.46.46.1 is installed
  • OR cups-libs-32bit-1.3.9-8.46.46.1 is installed
  • OR cups-libs-x86-1.3.9-8.46.46.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND Package Information
  • Mesa-9.0.3-0.28.29.2 is installed
  • OR Mesa-32bit-9.0.3-0.28.29.2 is installed
  • OR Mesa-x86-9.0.3-0.28.29.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 is installed
  • AND apache2-mod_perl-2.0.8-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • augeas-1.2.0-3 is installed
  • OR augeas-lenses-1.2.0-3 is installed
  • OR libaugeas0-1.2.0-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND clamav-0.99.2-32.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND apache2-mod_jk-1.2.40-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND xfsprogs-4.3.0-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • bash-4.3-83.15 is installed
  • OR bash-doc-4.3-83.15 is installed
  • OR libreadline6-6.3-83.15 is installed
  • OR libreadline6-32bit-6.3-83.15 is installed
  • OR readline-doc-6.3-83.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_48-52_27-default-5-2.2 is installed
  • OR kgraft-patch-3_12_48-52_27-xen-5-2.2 is installed
  • OR kgraft-patch-SLE12_Update_8-5-2.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
  • AND Package Information
  • apache-commons-daemon-1.0.15-4 is installed
  • OR apache-commons-daemon-javadoc-1.0.15-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP1 is installed
  • AND Package Information
  • kgraft-patch-3_12_67-60_64_21-default-11-2 is installed
  • OR kgraft-patch-3_12_67-60_64_21-xen-11-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_10-11-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • perl-Mail-SpamAssassin-3.4.2-7.9 is installed
  • OR perl-Mail-SpamAssassin-Plugin-iXhash2-2.05-7.9 is installed
  • OR spamassassin-3.4.2-7.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP2 is installed
  • AND Package Information
  • libldb-devel-3.6.3-0.33.39.1 is installed
  • OR libnetapi-devel-3.6.3-0.33.39.1 is installed
  • OR libnetapi0-3.6.3-0.33.39.1 is installed
  • OR libsmbclient-devel-3.6.3-0.33.39.1 is installed
  • OR libsmbsharemodes-devel-3.6.3-0.33.39.1 is installed
  • OR libsmbsharemodes0-3.6.3-0.33.39.1 is installed
  • OR libtalloc-devel-3.6.3-0.33.39.1 is installed
  • OR libtdb-devel-3.6.3-0.33.39.1 is installed
  • OR libtevent-devel-3.6.3-0.33.39.1 is installed
  • OR libwbclient-devel-3.6.3-0.33.39.1 is installed
  • OR samba-devel-3.6.3-0.33.39.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND Package Information
  • libreoffice-help-cs-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-da-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-de-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-en-GB-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-en-US-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-es-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-fr-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-gu-IN-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-hi-IN-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-hu-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-it-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-ja-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-ko-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-nl-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-pl-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-pt-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-pt-BR-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-ru-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-sv-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-zh-CN-4.0.3.3.26-0.10.2 is installed
  • OR libreoffice-help-zh-TW-4.0.3.3.26-0.10.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 is installed
  • AND Package Information
  • avahi-compat-howl-devel-0.6.31-20 is installed
  • OR avahi-compat-mDNSResponder-devel-0.6.31-20 is installed
  • OR libavahi-devel-0.6.31-20 is installed
  • OR libhowl0-0.6.31-20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP1 is installed
  • AND Package Information
  • finch-devel-2.10.9-8 is installed
  • OR libpurple-2.10.9-8 is installed
  • OR libpurple-devel-2.10.9-8 is installed
  • OR libpurple-lang-2.10.9-8 is installed
  • OR pidgin-devel-2.10.9-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
  • AND wireshark-devel-2.2.7-47 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
  • AND aaa_base-malloccheck-13.2+git20140911.61c1681-38.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 is installed
  • AND bash-lang-4.2-75 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
  • AND libwmf-0_2-7-0.2.8.4-242 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
  • AND bash-lang-4.3-78 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
  • AND bash-lang-4.3-82 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND Package Information
  • bluez-5.48-5.16 is installed
  • OR bluez-cups-5.48-5.16 is installed
  • BACK