CVE-2010-1132

EUVD-2010-1163
The mlfi_envrcpt function in spamass-milter.cpp in SpamAssassin Milter Plugin 0.3.1, when using the expand option, allows remote attackers to execute arbitrary system commands via shell metacharacters in the RCPT TO field of an email message.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 95%
Affected Products (NVD)
VendorProductVersion
georg_grevespamassassin_milter_plugin
0.3.1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
spamass-milter
bookworm
0.4.0-2
fixed
bullseye
0.4.0-2
fixed
sid
0.4.0-2
fixed
trixie
0.4.0-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
spamass-milter
dapper
ignored
hardy
ignored
intrepid
ignored
jaunty
Fixed 0.3.1-8+lenny1build0.9.04.1
released
karmic
Fixed 0.3.1-8+lenny1build0.9.10.1
released
lucid
not-affected
maverick
not-affected
natty
not-affected
oneiric
not-affected
References