John Burnham wrote: >> Yesterday, i upgraded SpamAssassin from "3.0.3-2sarge1" to >> "3.1.7-1~bpo.1" on a Debian Sarge box, using the following repository: >> > The routers and transports seem fine. However, a quick check through a FreeBSD > Spamassassin change log does reveal that a bug was introduced that gave > problems > with Exim, Spamassassin and BSMTP: > http://pkgsrc.se/mail/spamassassin > (bug 4966 in their numbering scheme) > > I'd check with the Debian package maintainers that this bug has been fixed in > the release they've put out. > J > > That release is also vulnerable to CVE-2007-0451 [1] (fixed upstream in 3.1.8) so you may want to wait for backports.org to produce an updated backport before using it.
[1] http://spamassassin.apache.org/advisories/cve-2007-0451.txt Cheers, Stu. -- ## List details at http://www.exim.org/mailman/listinfo/exim-users ## Exim details at http://www.exim.org/ ## Please use the Wiki with this list - http://www.exim.org/eximwiki/
