[exim-dev] [Bug 1974] Handle missing final CRLF in chunked/B…

Page principale
Supprimer ce message
Répondre à ce message
Auteur: admin
Date:  
À: exim-dev
Anciens-sujets: [exim-dev] [Bug 1974] New: Handle missing final CRLF in chunked/BDAT transferred messages, resulting in a missing final LF in spool files
Sujet: [exim-dev] [Bug 1974] Handle missing final CRLF in chunked/BDAT transferred messages, resulting in a missing final LF in spool files
https://bugs.exim.org/show_bug.cgi?id=1974

Phil Pennock <pdp@???> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
   Target Milestone|Exim 4.88                   |Exim 4.89
           Priority|medium                      |critical
                 CC|                            |pdp@???
             Status|NEW                         |ASSIGNED


--- Comment #5 from Phil Pennock <pdp@???> ---
This is a DoS against Exim for any Exim which relays to a host which doesn't
support CHUNKING.

Exim never supplies the terminating dot on a line on its own. So the mail
builds up in Exim's queue, undeliverable. And this can be done by any remote
sender who can get mail accepted.

There are too many fully supported and sane scenarios where this breaks.

This is a release blocker for 4.89.

--
You are receiving this mail because:
You are on the CC list for the bug.