[exim-dev] [Bug 1974] Handle missing final CRLF in chunked/B…

Startseite
Nachricht löschen
Nachricht beantworten
Autor: admin
Datum:  
To: exim-dev
Alte Treads: [exim-dev] [Bug 1974] New: Handle missing final CRLF in chunked/BDAT transferred messages, resulting in a missing final LF in spool files
Betreff: [exim-dev] [Bug 1974] Handle missing final CRLF in chunked/BDAT transferred messages, resulting in a missing final LF in spool files
https://bugs.exim.org/show_bug.cgi?id=1974

Phil Pennock <pdp@???> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
   Target Milestone|Exim 4.88                   |Exim 4.89
           Priority|medium                      |critical
                 CC|                            |pdp@???
             Status|NEW                         |ASSIGNED


--- Comment #5 from Phil Pennock <pdp@???> ---
This is a DoS against Exim for any Exim which relays to a host which doesn't
support CHUNKING.

Exim never supplies the terminating dot on a line on its own. So the mail
builds up in Exim's queue, undeliverable. And this can be done by any remote
sender who can get mail accepted.

There are too many fully supported and sane scenarios where this breaks.

This is a release blocker for 4.89.

--
You are receiving this mail because:
You are on the CC list for the bug.