It was discovered that postfix-policyd, an anti-spam plugin for postfix, didn't correctly test lengths of incoming SMTP commands potentially allowing the remote execution of arbitrary code. For the old stable distribution (sarge), this package was not present. For the stable distribution (etch), this problem has been fixed in version 1.80-2.1etch1. For the unstable distribution (sid), this problem has been fixed in version 1.80-2.2. We recommend that you upgrade your postfix-policyd package.
It was discovered that postfix-policyd, an anti-spam plugin for postfix, didn't correctly test lengths of incoming SMTP commands potentially allowing the remote execution of arbitrary code.
For the old stable distribution (sarge), this package was not present.
For the stable distribution (etch), this problem has been fixed in version 1.80-2.1etch4.
For the unstable distribution (sid), this problem has been fixed in version 1.80-2.2.
We recommend that you upgrade your postfix-policyd package.
MD5 checksums of the listed files are available in the original advisory.