On Fri, 25 Oct 2002, Tamas TEVESZ wrote:
> > Hmmm, btw this could be used as an open-relay, very nice ;)
> >
> > Send someone who uses fetchmail in a broken config like this, an mail that
> > looks like this.
> >
> > To: spamme@???
> > BCC: spammore@???
> > BCC: anotherspam@???
>
> how exactly ?
>
> it's *exim* who adds the *final* envelope-to: based on the smtp rcpt
> to: or something. this definitely has *nothing* to do with the
> in-message headers. then, fetchmail decides on the *envelope-to*
> header, which in turn is added by a trusted exim.
>
> the only way to turn this into an open relay is by having an
> open-relay exim at the first place.
>
> no freaking way i'm ever going to route messages based on headers i'm
> not in full control of.