Bitdefender exploit report

Kevin Spicer kevins at BMRB.CO.UK
Wed Jul 20 09:41:39 IST 2005


MailScanner doesn't use the mail server version of Bitdefender, it uses
the command line scanner (which is currently version 7).  I don't think
this should worry MailScanner users, unless anyone knows any additional
information...

On Wed, 2005-07-20 at 08:09 +0100, John Clancy wrote:
> FYI:
> 
> BitDefender Antivirus & Antispam for Linux and FreeBSD Mail Servers is 
> susceptible to an antivirus scan evasion vulnerability.
> 
> This vulnerability allows malicious content to pass undetected, leading to a 
> false sense of security.  A malicious attachment may be opened by a 
> vulnerable user facilitating a malicious code infection.
> 
> BitDefender Antivirus & Antispam for Linux and FreeBSD Mail Servers versions 
> 1.6.1 and prior are affected by this issue
> 
> Details are at http://www.securityfocus.com/bid/14262/info
> 
> JC 
> 
> ------------------------ MailScanner list ------------------------
> To unsubscribe, email jiscmail at jiscmail.ac.uk with the words:
> 'leave mailscanner' in the body of the email.
> Before posting, read the Wiki (http://wiki.mailscanner.info/) and
> the archives (http://www.jiscmail.ac.uk/lists/mailscanner.html).
> 
> Support MailScanner development - buy the book off the website!

=================================================================

BMRB 
http://www.bmrb.co.uk
_________________________________________________________________
This message (and any attachment) is intended only for the 
recipient and may contain confidential and/or privileged 
material.  If you have received this in error, please contact the 
sender and delete this message immediately.  Disclosure, copying 
or other action taken in respect of this email or in 
reliance on it is prohibited.  BMRB Limited accepts no liability 
in relation to any personal emails, or content of any email which 
does not directly relate to our business.
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

------------------------ MailScanner list ------------------------
To unsubscribe, email jiscmail at jiscmail.ac.uk with the words:
'leave mailscanner' in the body of the email.
Before posting, read the Wiki (http://wiki.mailscanner.info/) and
the archives (http://www.jiscmail.ac.uk/lists/mailscanner.html).

Support MailScanner development - buy the book off the website!



More information about the MailScanner mailing list