ZeroHour

CVE-2019-12420

CVSS 3.1
7.5 high
EPSS
7%p94
Published
()
Modified
Description

In Apache SpamAssassin before 3.4.3, a message can be crafted in a way to use excessive resources. Upgrading to SA 3.4.3 as soon as possible is the recommended fix but details will not be shared publicly.

Vendors
apachedebian
Products
spamassassin, debian linux
Weakness
CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.