Vulnerability Name:

CVE-2007-0451 (CCN-32536)

Assigned:2007-02-13
Published:2007-02-13
Updated:2017-10-11
Summary:Apache SpamAssassin before 3.1.8 allows remote attackers to cause a denial of service via long URLs in malformed HTML, which triggers "massive memory usage."
CVSS v3 Severity:5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): High
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P)
3.2 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
5.4 Medium (CCN CVSS v2 Vector: AV:N/AC:H/Au:N/C:N/I:N/A:C)
4.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): High
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Type:CWE-399
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2007-0451

Source: FEDORA
Type: Patch
FEDORA-2007-242

Source: FEDORA
Type: Patch
FEDORA-2007-241

Source: OSVDB
Type: UNKNOWN
33207

Source: CCN
Type: RHSA-2007-0074
Important: spamassassin security update

Source: REDHAT
Type: UNKNOWN
RHSA-2007:0074

Source: CCN
Type: RHSA-2007-0075
Important: spamassassin security update

Source: CCN
Type: SA24197
SpamAssassin Long URI Denial of Service

Source: SECUNIA
Type: Vendor Advisory
24197

Source: SECUNIA
Type: Vendor Advisory
24200

Source: SECUNIA
Type: Vendor Advisory
24250

Source: SECUNIA
Type: Vendor Advisory
24256

Source: SECUNIA
Type: Vendor Advisory
24265

Source: SECUNIA
Type: Vendor Advisory
24307

Source: SECUNIA
Type: Vendor Advisory
24889

Source: GENTOO
Type: UNKNOWN
GLSA-200703-02

Source: CCN
Type: SECTRACK ID: 1017666
SpamAssassin Error in Processing Long URIs May Let Remote Users Deny Servce

Source: CONFIRM
Type: UNKNOWN
http://spamassassin.apache.org/advisories/cve-2007-0451.txt

Source: CCN
Type: SpamAssassin: Downloads
The Apache SpamAssassin Project

Source: CCN
Type: ASA-2007-076
SpamAssassin security update (RHSA-2007-0074)

Source: CCN
Type: SpamAssassin SVN Repository
ANNOUNCE: Apache SpamAssassin 3.1.8 available!

Source: CONFIRM
Type: UNKNOWN
http://svn.apache.org/repos/asf/spamassassin/branches/3.1/build/announcements/3.1.8.txt

Source: CCN
Type: GLSA-200703-02
SpamAssassin: Long URI Denial of Service

Source: MANDRIVA
Type: UNKNOWN
MDKSA-2007:049

Source: SUSE
Type: UNKNOWN
SUSE-SR:2007:006

Source: CCN
Type: OSVDB ID: 33207
SpamAssassin Malformed HTML Long URI DoS

Source: REDHAT
Type: UNKNOWN
RHSA-2007:0075

Source: BID
Type: Patch
22584

Source: CCN
Type: BID-22584
SpamAssassin Long URI Handling Remote Denial of Service Vulnerability

Source: SECTRACK
Type: UNKNOWN
1017666

Source: VUPEN
Type: Vendor Advisory
ADV-2007-0628

Source: XF
Type: UNKNOWN
spamassassin-url-dos(32536)

Source: XF
Type: UNKNOWN
spamassassin-url-dos(32536)

Source: CONFIRM
Type: UNKNOWN
https://issues.rpath.com/browse/RPL-1073

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:10018

Source: SUSE
Type: SUSE-SR:2007:006
SUSE Security Summary Report

Vulnerable Configuration:Configuration 1:
  • cpe:/a:apache:spamassassin:3.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.0.3:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.0.4:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.1.0:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:*:*:*:*:*:*:*:* (Version <= 3.1.7)

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:4:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/o:redhat:enterprise_linux:4::as:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/o:redhat:enterprise_linux:4::desktop:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:4::es:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:4::ws:*:*:*:*:*

  • Configuration RedHat 6:
  • cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*

  • Configuration RedHat 7:
  • cpe:/o:redhat:enterprise_linux:5::client:*:*:*:*:*

  • Configuration RedHat 8:
  • cpe:/o:redhat:enterprise_linux:5::server:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:apache:spamassassin:3.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.0.3:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.0.4:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.1.0:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:apache:spamassassin:3.1.7:*:*:*:*:*:*:*
  • AND
  • cpe:/o:gentoo:linux:*:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::as:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::desktop:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::ws:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007::x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0::x86_64:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5:*:client_workstation:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5:*:client:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:42424
    P
    Security update for xen (Important)
    2022-07-29
    oval:org.opensuse.security:def:20070451
    V
    CVE-2007-0451
    2022-06-30
    oval:org.opensuse.security:def:42215
    P
    Security update for openssl-1_1 (Important)
    2022-03-16
    oval:org.opensuse.security:def:113121
    P
    perl-Mail-SpamAssassin-3.4.6-71.3 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:32237
    P
    Security update for glib-networking (Important)
    2021-12-13
    oval:org.opensuse.security:def:31316
    P
    Security update for webkit2gtk3 (Important)
    2021-12-01
    oval:org.opensuse.security:def:31708
    P
    Security update for webkit2gtk3 (Important)
    2021-11-23
    oval:org.opensuse.security:def:31701
    P
    Security update for pcre (Moderate)
    2021-11-10
    oval:org.opensuse.security:def:26160
    P
    Security update for binutils (Moderate)
    2021-11-09
    oval:org.opensuse.security:def:31287
    P
    Security update for the Linux Kernel (Live Patch 40 for SLE 12 SP3) (Important)
    2021-10-18
    oval:org.opensuse.security:def:26143
    P
    Security update for curl (Moderate)
    2021-10-11
    oval:org.opensuse.security:def:32198
    P
    Security update for webkit2gtk3 (Important)
    2021-10-06
    oval:org.opensuse.security:def:106555
    P
    perl-Mail-SpamAssassin-3.4.6-71.3 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:26134
    P
    Security update for the Linux Kernel (Important)
    2021-09-23
    oval:org.opensuse.security:def:32189
    P
    Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
    2021-09-23
    oval:org.opensuse.security:def:31275
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-09-23
    oval:org.opensuse.security:def:32980
    P
    Security update for spice-vdagent (Moderate)
    2021-08-17
    oval:org.opensuse.security:def:26103
    P
    Security update for the Linux Kernel (Important)
    2021-08-10
    oval:org.opensuse.security:def:32149
    P
    Security update for linuxptp (Important)
    2021-07-21
    oval:org.opensuse.security:def:26090
    P
    Security update for systemd (Moderate)
    2021-07-20
    oval:org.opensuse.security:def:31642
    P
    Security update for webkit2gtk3 (Important)
    2021-06-17
    oval:org.opensuse.security:def:26076
    P
    Security update for webkit2gtk3 (Important)
    2021-06-17
    oval:org.opensuse.security:def:42676
    P
    perl-spamassassin-3.3.1-10.8.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:32941
    P
    Security update for spice (Important)
    2021-06-08
    oval:org.opensuse.security:def:36269
    P
    perl-spamassassin-3.3.1-10.8.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:31184
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-06-04
    oval:org.opensuse.security:def:32102
    P
    Security update for polkit (Important)
    2021-06-03
    oval:org.opensuse.security:def:32095
    P
    Security update for libxml2 (Important)
    2021-05-19
    oval:org.opensuse.security:def:32093
    P
    Security update for djvulibre (Important)
    2021-05-19
    oval:org.opensuse.security:def:31747
    P
    Security update for nghttp2 (Important)
    2021-03-24
    oval:org.opensuse.security:def:31361
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important)
    2021-03-17
    oval:org.opensuse.security:def:31735
    P
    Security update for perl-XML-Twig (Moderate)
    2021-03-01
    oval:org.opensuse.security:def:31736
    P
    Security update for MozillaFirefox (Important)
    2021-03-01
    oval:org.opensuse.security:def:26196
    P
    Security update for ImageMagick (Moderate)
    2021-02-19
    oval:org.opensuse.security:def:32259
    P
    Security update for bind (Important)
    2021-02-18
    oval:org.opensuse.security:def:31729
    P
    Security update for screen (Important)
    2021-02-17
    oval:org.opensuse.security:def:26037
    P
    Security update for the Linux Kernel (Important)
    2021-01-15
    oval:org.opensuse.security:def:31276
    P
    Security update for java-1_8_0-ibm (Moderate)
    2021-01-05
    oval:org.opensuse.security:def:31099
    P
    Security update for clamav (Important)
    2020-12-22
    oval:org.opensuse.security:def:31569
    P
    Security update for clamav (Important)
    2020-12-22
    oval:org.opensuse.security:def:31098
    P
    Security update for MozillaFirefox (Critical)
    2020-12-21
    oval:org.opensuse.security:def:35630
    P
    perl-spamassassin-3.2.5-26.22.18 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:42037
    P
    perl-spamassassin-3.2.5-26.22.18 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35808
    P
    perl-spamassassin-3.3.1-10.8.3 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:36017
    P
    perl-spamassassin-3.3.1-10.8.3 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:25193
    P
    Security update for ed (Low)
    2020-12-01
    oval:org.opensuse.security:def:25523
    P
    Security update for dpdk (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25860
    P
    Security update for bash (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26595
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25359
    P
    Security update for SUSE Manager Client Tools (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25643
    P
    Security update for hunspell (Low)
    2020-12-01
    oval:org.opensuse.security:def:25988
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25566
    P
    Security update for openexr (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25770
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26298
    P
    Security update for mariadb-100 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25894
    P
    Security update for gstreamer-0_10-plugins-bad (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26244
    P
    Security update for openconnect (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26536
    P
    dbus-1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27267
    P
    perl-spamassassin on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31110
    P
    Security update for krb5
    2020-12-01
    oval:org.opensuse.security:def:31465
    P
    Security update for postgresql94 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31813
    P
    Security update for apache2-mod_jk (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32556
    P
    libmysqlclient15-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31585
    P
    Security update for tcpdump (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31941
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:31483
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31821
    P
    Security update for avahi (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32489
    P
    apache2-mod_php5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33232
    P
    perl-spamassassin on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25257
    P
    Security update for apache2-mod_auth_openidc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25607
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25899
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26630
    P
    perl-spamassassin on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25370
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:25700
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:26772
    P
    libvorbis on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25567
    P
    Security update for java-11-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:25851
    P
    Security update for freerdp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26342
    P
    Security update for openjpeg2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25818
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26022
    P
    Security update for icu (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26395
    P
    Security update for MozillaThunderbird (Important)
    2020-12-01
    oval:org.opensuse.security:def:26550
    P
    fuse on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31552
    P
    Security update for socat (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31852
    P
    Recommended udpate for SUSE Manager Client Tools (Low)
    2020-12-01
    oval:org.opensuse.security:def:32595
    P
    perl-spamassassin on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31990
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:32733
    P
    libsnmp15-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31484
    P
    Security update for python (Important)
    2020-12-01
    oval:org.opensuse.security:def:31793
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:32303
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31953
    P
    Security update for gstreamer-0_10-plugins-base (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32345
    P
    Security update for spice (Important)
    2020-12-01
    oval:org.opensuse.security:def:32511
    P
    findutils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25181
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25385
    P
    Security update for MozillaFirefox (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25758
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:25913
    P
    Security update for tcpdump, libpcap (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25434
    P
    Security update for dovecot22 (Important)
    2020-12-01
    oval:org.opensuse.security:def:25784
    P
    Security update for flash-player (Critical)
    2020-12-01
    oval:org.opensuse.security:def:26807
    P
    perl-spamassassin on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25578
    P
    Security update for python-ipaddress (Important)
    2020-12-01
    oval:org.opensuse.security:def:25908
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26245
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26980
    P
    libxcrypt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25819
    P
    Security update for python-tornado (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26448
    P
    Security update for phpMyAdmin (Important)
    2020-12-01
    oval:org.opensuse.security:def:26594
    P
    libopensc2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31874
    P
    Security update for cyrus-imapd (Important)
    2020-12-01
    oval:org.opensuse.security:def:32029
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:32772
    P
    perl-spamassassin on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31495
    P
    Security update for Python
    2020-12-01
    oval:org.opensuse.security:def:31850
    P
    Security update for clamav (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32045
    P
    Security update for krb5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32401
    P
    Security update for vim (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32555
    P
    libmusicbrainz4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25182
    P
    Security update for krb5-appl (Important)
    2020-12-01
    oval:org.opensuse.security:def:25466
    P
    Security update for libxml2 (Low)
    2020-12-01
    oval:org.opensuse.security:def:25811
    P
    Security update for libvirt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25957
    P
    Security update for webkit2gtk3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:25358
    P
    Security update for tomcat (Important)
    2020-12-01
    oval:org.opensuse.security:def:25562
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:25935
    P
    Security update for libcares2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25642
    P
    Security update for blktrace (Low)
    2020-12-01
    oval:org.opensuse.security:def:25992
    P
    Security update for webkit2gtk3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:26284
    P
    Security update for taglib (Low)
    2020-12-01
    oval:org.opensuse.security:def:27015
    P
    perl-spamassassin on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25830
    P
    Security update for libimobiledevice, usbmuxd (Important)
    2020-12-01
    oval:org.opensuse.security:def:26497
    P
    Security update for tor (Important)
    2020-12-01
    oval:org.opensuse.security:def:27232
    P
    log4net on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31408
    P
    Security update for permissions (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31764
    P
    Security update for MozillaFirefox, MozillaFirefox-branding-SLE and mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:31918
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31493
    P
    Security update for python
    2020-12-01
    oval:org.opensuse.security:def:31885
    P
    Security update for ecryptfs-utils (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32051
    P
    Security update for kvm (Important)
    2020-12-01
    oval:org.opensuse.security:def:31937
    P
    Security update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32450
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:33193
    P
    libxcrypt on GA media (Moderate)
    2020-12-01
    oval:org.mitre.oval:def:21838
    P
    ELSA-2007:0075: spamassassin security update (Important)
    2014-05-26
    oval:org.mitre.oval:def:10018
    V
    Apache SpamAssassin before 3.1.8 allows remote attackers to cause a denial of service via long URLs in malformed HTML, which triggers "massive memory usage."
    2013-04-29
    oval:com.redhat.rhsa:def:20070075
    P
    RHSA-2007:0075: spamassassin security update (Important)
    2007-03-14
    oval:com.redhat.rhsa:def:20070074
    P
    RHSA-2007:0074: spamassassin security update (Important)
    2007-02-21
    BACK
    apache spamassassin 3.0.1
    apache spamassassin 3.0.2
    apache spamassassin 3.0.3
    apache spamassassin 3.0.4
    apache spamassassin 3.1.0
    apache spamassassin 3.1.1
    apache spamassassin 3.1.2
    apache spamassassin *
    apache spamassassin 3.0.1
    apache spamassassin 3.0.2
    apache spamassassin 3.0.3
    apache spamassassin 3.0.4
    apache spamassassin 3.1.0
    apache spamassassin 3.1.1
    apache spamassassin 3.1.2
    apache spamassassin 3.1.7
    gentoo linux *
    redhat enterprise linux 4
    redhat enterprise linux 4
    redhat enterprise linux 4
    redhat enterprise linux 4
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux corporate server 4.0
    mandrakesoft mandrake linux corporate server 4.0
    redhat enterprise linux 5
    redhat enterprise linux 5
    redhat enterprise linux 5