[exim-dev] [Bug 1974] Handle missing final CRLF in chunked/B…

Góra strony
Delete this message
Reply to this message
Autor: admin
Data:  
Dla: exim-dev
Stare tematy: [exim-dev] [Bug 1974] New: Handle missing final CRLF in chunked/BDAT transferred messages, resulting in a missing final LF in spool files
Temat: [exim-dev] [Bug 1974] Handle missing final CRLF in chunked/BDAT transferred messages, resulting in a missing final LF in spool files
https://bugs.exim.org/show_bug.cgi?id=1974

Phil Pennock <pdp@???> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
   Target Milestone|Exim 4.88                   |Exim 4.89
           Priority|medium                      |critical
                 CC|                            |pdp@???
             Status|NEW                         |ASSIGNED


--- Comment #5 from Phil Pennock <pdp@???> ---
This is a DoS against Exim for any Exim which relays to a host which doesn't
support CHUNKING.

Exim never supplies the terminating dot on a line on its own. So the mail
builds up in Exim's queue, undeliverable. And this can be done by any remote
sender who can get mail accepted.

There are too many fully supported and sane scenarios where this breaks.

This is a release blocker for 4.89.

--
You are receiving this mail because:
You are on the CC list for the bug.