Re: [exim] Re: [exim-dev] buffer overflow?

Top Page
Delete this message
Reply to this message
Author: Philip Hazel
Date:  
To: Mark Morley
CC: exim-users
Subject: Re: [exim] Re: [exim-dev] buffer overflow?
On Sat, 12 Mar 2005, Mark Morley wrote:

> 2005-03-12 02:14:20 SMTP protocol violation: synchronization error (input
> sent without waiting for greeting): rejected connection from
> H=[218.109.116.199] input="# $FreeBSD: src/etc/group,v 1.19.2.3 2002/06/30
> 17:57:17 des Exp $\n#\nwheel:*:0:root,admin\ndaemon:*:1:daemon\n.....
>
> I see maybe 25 of these a day. Always related to a sync error, usually from
> different IPs, always the group file never anything else, and on multiple
> machines. Only started with 4.50 and I've absolutely no doubt that this is
> NOT the result of cracked server.


I am guessing that I've introduced a bug when adding the "input="
feature, and that it is printing out data from the wrong address, or the
buffer hasn't been properly initialized, or something like that. I'll
take a look at the code in due course.

-- 
Philip Hazel            University of Cambridge Computing Service,
ph10@???      Cambridge, England. Phone: +44 1223 334714.
Get the Exim 4 book:    http://www.uit.co.uk/exim-book