Apache SpamAssassin 3.0.1, 3.0.2, and 3.0.3 allows remote attackers to cause a denial of service (CPU consumption and slowdown) via a message with a long Content-Type header without any boundaries.
| Software | From | Fixed in |
|---|---|---|
| apache / spamassassin | 3.0.3 | 3.0.3.x |
| apache / spamassassin | 3.0.1 | 3.0.1.x |
| apache / spamassassin | 3.0.2 | 3.0.2.x |