<title>SpamAssassin: Denial of Service vulnerability</title>
SpamAssassin is vulnerable to a Denial of Service attack when handling
certain malformed messages.
<announced>August 09, 2004</announced>
<revised>May 22, 2006: 02</revised>
SpamAssassin is an extensible email filter which is used to identify
SpamAssassin contains an unspecified Denial of Service vulnerability.
By sending a specially crafted message an attacker could cause a Denial
of Service attack against the SpamAssassin service.
There is no known workaround at this time. All users are encouraged to
upgrade to the latest available version of SpamAssassin.
All SpamAssassin users should upgrade to the latest version:
# emerge sync
# emerge -pv &quot;&gt;=mail-filter/spamassassin-2.64&quot;
# emerge &quot;&gt;=mail-filter/spamassassin-2.64&quot;</code>
<uri link=";m=109168121628767&amp;w=2">SpamAssassin Release Announcement</uri>
<uri link="">CVE-2004-0796</uri>
