The SpamAssassin Milter plug-in has been found to contain a security vulnerability.
"The SpamAssassin Milter plug-in is frequently used to run SpamAssassin on Postfix servers," according to The H Security.
"In order to exploit the vulnerability, the plug-in must be called with the -x expand flag," the article states. "For attackers to obtain root privileges, as the author of the security advisory proclaims, the plug-in has to be started as root -- something which is anyway highly inadvisable."
Click here to read the article at The H Security.
Loading Comments...