CVE Vulnerabilities

CVE-2007-0451

Published: Feb 16, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Apache SpamAssassin before 3.1.8 allows remote attackers to cause a denial of service via long URLs in malformed HTML, which triggers massive memory usage.

Affected Software

NameVendorStart VersionEnd Version
SpamassassinApache*3.1.7 (including)
SpamassassinApache3.0.1 (including)3.0.1 (including)
SpamassassinApache3.0.2 (including)3.0.2 (including)
SpamassassinApache3.0.3 (including)3.0.3 (including)
SpamassassinApache3.0.4 (including)3.0.4 (including)
SpamassassinApache3.1.0 (including)3.1.0 (including)
SpamassassinApache3.1.1 (including)3.1.1 (including)
SpamassassinApache3.1.2 (including)3.1.2 (including)
Red Hat Enterprise Linux 4RedHatspamassassin-0:3.1.8-2.el4*
Red Hat Enterprise Linux 5RedHatspamassassin-0:3.1.8-2.el5*
SpamassassinUbuntudapper*
SpamassassinUbuntudevel*
SpamassassinUbuntuedgy*
SpamassassinUbuntufeisty*
SpamassassinUbuntugutsy*
SpamassassinUbuntuhardy*
SpamassassinUbuntuintrepid*
SpamassassinUbuntujaunty*
SpamassassinUbuntukarmic*

References