[exim-dev] [Bug 1974] Handle missing final CRLF in chunked/B…

Top Page
Delete this message
Reply to this message
Author: admin
Date:  
To: exim-dev
Old-Topics: [exim-dev] [Bug 1974] New: Handle missing final CRLF in chunked/BDAT transferred messages, resulting in a missing final LF in spool files
Subject: [exim-dev] [Bug 1974] Handle missing final CRLF in chunked/BDAT transferred messages, resulting in a missing final LF in spool files
https://bugs.exim.org/show_bug.cgi?id=1974

Phil Pennock <pdp@???> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
   Target Milestone|Exim 4.88                   |Exim 4.89
           Priority|medium                      |critical
                 CC|                            |pdp@???
             Status|NEW                         |ASSIGNED


--- Comment #5 from Phil Pennock <pdp@???> ---
This is a DoS against Exim for any Exim which relays to a host which doesn't
support CHUNKING.

Exim never supplies the terminating dot on a line on its own. So the mail
builds up in Exim's queue, undeliverable. And this can be done by any remote
sender who can get mail accepted.

There are too many fully supported and sane scenarios where this breaks.

This is a release blocker for 4.89.

--
You are receiving this mail because:
You are on the CC list for the bug.