ืฉื—ืจื•ืจ ืžืขืจื›ืช ืกื™ื ื•ืŸ ื“ื•ืืจ ื–ื‘ืœ SpamAssassin 3.4.5 ืขื ื‘ื™ื˜ื•ืœ ืคื’ื™ืขื•ืช

ื”ืฉื—ืจื•ืจ ืฉืœ ืคืœื˜ืคื•ืจืžืช ืกื™ื ื•ืŸ ื”ืกืคืื ื–ืžื™ืŸ - SpamAssassin 3.4.5. SpamAssassin ืžื™ื™ืฉืžืช ื’ื™ืฉื” ืžืฉื•ืœื‘ืช ืœื”ื—ืœื˜ื” ืื ืœื—ืกื•ื: ื”ื”ื•ื“ืขื” ื ืชื•ื ื” ืœืžืกืคืจ ื‘ื“ื™ืงื•ืช (ื ื™ืชื•ื— ื”ืงืฉืจ, ืจืฉื™ืžื•ืช ืฉื—ื•ืจ ื•ืœื‘ืŸ DNSBL, ืžืกื•ื•ื’ื™ื ื‘ื™ื™ืกื™ืื ื™ื™ื ืžืื•ืžื ื™ื, ื‘ื“ื™ืงืช ื—ืชื™ืžื•ืช, ืื™ืžื•ืช ืฉื•ืœื— ื‘ืืžืฆืขื•ืช SPF ื•-DKIM ื•ื›ื•'). ืœืื—ืจ ื”ืขืจื›ืช ื”ื”ื•ื“ืขื” ื‘ืฉื™ื˜ื•ืช ืฉื•ื ื•ืช, ืžืฆื˜ื‘ืจ ืžืงื“ื ืžืฉืงืœ ืžืกื•ื™ื. ืื ื”ืžืงื“ื ื”ืžื—ื•ืฉื‘ ื—ื•ืจื’ ืžืกืฃ ืžืกื•ื™ื, ื”ื”ื•ื“ืขื” ื ื—ืกืžืช ืื• ืžืกื•ืžื ืช ื›ื“ื•ืืจ ื–ื‘ืœ. ื›ืœื™ื ืœืขื“ื›ื•ืŸ ืื•ื˜ื•ืžื˜ื™ ืฉืœ ื›ืœืœื™ ืกื™ื ื•ืŸ ื ืชืžื›ื™ื. ื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ื—ื‘ื™ืœื” ื”ืŸ ื‘ืžืขืจื›ื•ืช ืœืงื•ื— ื•ื”ืŸ ื‘ืžืขืจื›ื•ืช ืฉืจืช. ืงื•ื“ SpamAssassin ื›ืชื•ื‘ ื‘-Perl ื•ืžื•ืคืฅ ืชื—ืช ืจื™ืฉื™ื•ืŸ Apache.

ื”ืžื”ื“ื•ืจื” ื”ื—ื“ืฉื” ืžืชืงื ืช ืคื’ื™ืขื•ืช (CVE-2020-1946) ื”ืžืืคืฉืจืช ืœืชื•ืงืฃ ืœื‘ืฆืข ืคืงื•ื“ื•ืช ืžืขืจื›ืช ื‘ืฉืจืช ื‘ืขืช ื”ืชืงื ืช ื›ืœืœื™ ื—ืกื™ืžื” ืœื ืžืื•ืžืชื™ื ื”ืžืชืงื‘ืœื™ื ืžืžืงื•ืจื•ืช ืฆื“ ืฉืœื™ืฉื™.

ื‘ื™ืŸ ื”ืฉื™ื ื•ื™ื™ื ืฉืื™ื ื ืงืฉื•ืจื™ื ืœืื‘ื˜ื—ื” ื ื™ืชืŸ ืœืžื ื•ืช ืฉื™ืคื•ืจื™ื ื‘ืขื‘ื•ื“ืช ื”ืชื•ืกืคื™ื OLEVBMacro ื•-AskDNS, ืฉื™ืคื•ืจื™ื ื‘ืชื”ืœื™ืš ื”ืชืืžืช ื”ื ืชื•ื ื™ื ื‘ื›ื•ืชืจื•ืช Received ื•-EnvelopeFrom, ืชื™ืงื•ื ื™ื ืœืกื›ื™ืžืช SQL Userpref, ืงื•ื“ ืžืฉื•ืคืจ ืœื‘ื“ื™ืงื•ืช ื‘-rbl ื•-hashbl, ื•ื›ืŸ ื. ืคืชืจื•ืŸ ืœื‘ืขื™ื” ืขื ืชื’ื™ TxRep.

ื™ืฆื•ื™ืŸ ื›ื™ ืคื™ืชื•ื— ืกื“ืจืช 3.4.x ื”ื•ืคืกืง ื•ืœื ื™ืชื‘ืฆืขื• ืขื•ื“ ืฉื™ื ื•ื™ื™ื ื‘ืกื ื™ืฃ ื–ื”. ื—ืจื™ื’ื” ืžืชื‘ืฆืขืช ืจืง ืขื‘ื•ืจ ืชื™ืงื•ื ื™ ื ืงื•ื“ื•ืช ืชื•ืจืคื”, ื‘ืžืงืจื” ืฉืœ ืžื”ื“ื•ืจื” 3.4.6 ืชื™ื•ื•ืฆืจ. ื›ืœ ืคืขื™ืœื•ืช ื”ืžืคืชื—ื™ื ืžืชืžืงื“ืช ื‘ืคื™ืชื•ื— ืกื ื™ืฃ 4.0, ืฉื™ื˜ืžื™ืข ืขื™ื‘ื•ื“ UTF-8 ืžื•ื‘ื ื” ืžืœื.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”