Re: [exim] CVE-2015-0235 - glibc gethostbyname remotelyexplo…

Αρχική Σελίδα
Delete this message
Reply to this message
Συντάκτης: Always Learning
Ημερομηνία:  
Προς: exim-users
Αντικείμενο: Re: [exim] CVE-2015-0235 - glibc gethostbyname remotelyexploitable via exim

On Tue, 2015-01-27 at 19:20 +0000, Phil Pennock wrote:


> Jumping ship would be doing something for the sake of doing something,
> addressing only whichever API most recently happened to have a
> vulnerability; it does not address any systemic issues and there's
> no guarantee that it would actually help.


It is in PHP too. Have, temporarily, disabled verify = helo and the PHP
instances.

--
Regards,

Paul.
England, EU.      Je suis Charlie.