Jump to content

Advisories (MDKSA-2006:061 ): mailman


aru
 Share

Recommended Posts

Mandriva Advisories MDKSA-2006:061 : mailman

 

Updated mailman packages fix DoS from badly formed mime multipart messages.

March 29th, 2006

 

Scrubber.py, in Mailman 2.1.5 and earlier, when using email 2.5 (part of Python), is susceptible to a DoS (mailman service stops delivering for the list in question) if it encounters a badly formed mime multipart message with only one part and that part has two blank lines between the first boundary and the end boundary. Updated packages have been patched to correct this issue.

 

 

The released versions of Mandriva GNU/Linux affected are:

  • CS3.0
  • 10.2

Full information about this advisory, including the updated packages, is available at:

wwwnew.mandriva.com/security/advisories?name=MDKSA-2006:061

 

Other references:

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0052

 

Posted automatically by aru (mdksec2mub v: mdksec2mub,v 0.15 2005/11/24 16:53:12 aru Exp aru $)

Link to comment
Share on other sites

 Share

×
×
  • Create New...