Related Vulnerabilities: CVE-2018-11805  

A malicious CF file is able to execute system commands without producing output/error streams.

Severity Medium

Remote Yes

Type Arbitrary command execution

Description

A malicious CF file is able to execute system commands without producing output/error streams.

AVG-1077 spamassassin 3.4.2-5 Medium Vulnerable

https://seclists.org/oss-sec/2019/q4/154