Re: [exim] Exim 4.80.1 security release - details

トップ ページ
このメッセージを削除
このメッセージに返信
著者: Marius Stan
日付:  
To: exim-users
題目: Re: [exim] Exim 4.80.1 security release - details
On 26.10.2012 11:35, Phil Pennock wrote:
> Folks,
>
> During internal code review on Wednesday, I uncovered a remote code
> execution hole in Exim, affecting releases 4.70 to 4.80, in the DKIM
> handling. This can be triggered by anyone who can send you email from a
> domain for which they control the DNS, and gets them the Exim run-time
> user.

Hi Phil,
If an existing exim instalation doesn't verify received DKIMs is it
still vulnerable ?