FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2004-0796

This CVE name corresponds to:

Entered Topic
2004-08-23 SpamAssassin -- denial-of-service in tokenize_headers

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2004-0796
Phase Assigned(20040820)

Description

SpamAssassin 2.5x, and 2.6x before 2.64, allows remote attackers to cause a denial of service via certain malformed messages.

References

Source Reference
MLIST [spamassassin-announce] 20040805 [SA-Announce] SpamAssassin 2.64 is released!
FEDORA FLSA:2268
GENTOO GLSA-200408-06
MANDRAKE MDKSA-2004:084
CONFIRM http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=129337
BID 10957
OVAL oval:org.mitre.oval:def:10413
XF spamassassin-dos(16938)