Login | Register For Free | Help
Search for: (Advanced)

Mailing List Archive: SpamAssassin: devel

[Bug 4570] Mail with lots of To addresses in header triggers Bus error in Perl [CVE-2005-3351]

 

 

SpamAssassin devel RSS feed   Index | Next | Previous | View Threaded


bugzilla-daemon at bugzilla

Nov 1, 2005, 12:45 PM

Post #1 of 6 (5177 views)
Permalink
[Bug 4570] Mail with lots of To addresses in header triggers Bus error in Perl [CVE-2005-3351]

http://issues.apache.org/SpamAssassin/show_bug.cgi?id=4570


jm [at] jmason changed:

What |Removed |Added
----------------------------------------------------------------------------
Summary|Mail with lots of To |Mail with lots of To
|addresses in header triggers|addresses in header triggers
|Bus error in Perl |Bus error in Perl [CVE-2005-
| |3351]




------- Additional Comments From jm [at] jmason 2005-11-01 21:45 -------
thanks for sorting the CVE for us, Mark.

I'm not sure if it's possible to actually use this to cause a practical DoS,
btw. it would be possible to get a message passed as nonspam (through scanner
failure), but the scanner should recover the dead child process immediately for
later scans; spamd is resilient in the face of the Mail::SpamAssassin classes
blowing up.



------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.


bugzilla-daemon at bugzilla

Nov 7, 2005, 12:51 PM

Post #2 of 6 (4969 views)
Permalink
[Bug 4570] Mail with lots of To addresses in header triggers Bus error in Perl [CVE-2005-3351] [In reply to]

http://issues.apache.org/SpamAssassin/show_bug.cgi?id=4570





------- Additional Comments From wtogami [at] redhat 2005-11-07 21:51 -------
Created an attachment (id=3238)
--> (http://issues.apache.org/SpamAssassin/attachment.cgi?id=3238&action=view)
spamassassin-3.0.4-4570-avoid-segfault-large-headers.patch

Testing of this patch in the past month has been fine.



------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.


bugzilla-daemon at bugzilla

Nov 7, 2005, 12:51 PM

Post #3 of 6 (4972 views)
Permalink
[Bug 4570] Mail with lots of To addresses in header triggers Bus error in Perl [CVE-2005-3351] [In reply to]

http://issues.apache.org/SpamAssassin/show_bug.cgi?id=4570


wtogami [at] redhat changed:

What |Removed |Added
----------------------------------------------------------------------------
Status|REOPENED |ASSIGNED
Status Whiteboard| |3 votes needed






------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.


bugzilla-daemon at bugzilla

Nov 8, 2005, 2:57 PM

Post #4 of 6 (4964 views)
Permalink
[Bug 4570] Mail with lots of To addresses in header triggers Bus error in Perl [CVE-2005-3351] [In reply to]

http://issues.apache.org/SpamAssassin/show_bug.cgi?id=4570





------- Additional Comments From jm [at] jmason 2005-11-08 23:57 -------
+1



------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.


bugzilla-daemon at bugzilla

Nov 8, 2005, 6:56 PM

Post #5 of 6 (4964 views)
Permalink
[Bug 4570] Mail with lots of To addresses in header triggers Bus error in Perl [CVE-2005-3351] [In reply to]

http://issues.apache.org/SpamAssassin/show_bug.cgi?id=4570


spamassassin [at] dostech changed:

What |Removed |Added
----------------------------------------------------------------------------
Status Whiteboard|3 votes needed |1 vote needed




------- Additional Comments From spamassassin [at] dostech 2005-11-09 03:56 -------
+1



------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.


bugzilla-daemon at bugzilla

Nov 8, 2005, 7:59 PM

Post #6 of 6 (4975 views)
Permalink
[Bug 4570] Mail with lots of To addresses in header triggers Bus error in Perl [CVE-2005-3351] [In reply to]

http://issues.apache.org/SpamAssassin/show_bug.cgi?id=4570


sidney [at] sidney changed:

What |Removed |Added
----------------------------------------------------------------------------
Status|ASSIGNED |RESOLVED
Resolution| |FIXED
Status Whiteboard|1 vote needed |




------- Additional Comments From sidney [at] sidney 2005-11-09 04:59 -------
+1

Committed revision 331942.




------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.

SpamAssassin devel RSS feed   Index | Next | Previous | View Threaded
 
 


Interested in having your list archived? Contact Gossamer Threads
 
  Web Applications & Managed Hosting Powered by Gossamer Threads Inc.