Re: [exim-dev] Candidate patches for privilege escalation

Página superior
Eliminar este mensaje
Responder a este mensaje
Autor: Tony Finch
Fecha:  
A: David Woodhouse
Cc: Phil Pennock, exim-dev
Asunto: Re: [exim-dev] Candidate patches for privilege escalation
On Tue, 14 Dec 2010, David Woodhouse wrote:
> On Mon, 2010-12-13 at 18:01 -0500, Phil Pennock wrote:
> >
> > http://wiki.mailscanner.info/doku.php?id=documentation:configuration:mta:exim:installation
>
> Wait a minute, wasn't that broken even *before* we started to further
> restrict the use of -C and -D?


Well, more like not intended to support scanning locally generated mail.
I used that configuration on our mail relays because I didn't like the
suggested clone-and-hack setup. Perhaps .include would have been neater.

Tony.
--
<fanf@???> <dot@???> http://dotat.at/ ${sg{\N${sg{\
N\}{([^N]*)(.)(.)(.*)}{\$1\$3\$2\$1\$3\n\$2\$3\$4\$3\n\$3\$2\$4}}\
\N}{([^N]*)(.)(.)(.*)}{\$1\$3\$2\$1\$3\n\$2\$3\$4\$3\n\$3\$2\$4}}