Quoting "David F. Skoll" <[EMAIL PROTECTED]>:

> Sendmail doesn't allow remote exploit due to recipient addresses with
> funny characters in them.  It certainly hasn't since Milter has been
> around, so "fixing" the problem in a milter is dumb.

Not if the problem is in the milter, or in the shell between the milter
and sendmail via popen(), or not fixable in some other way...

But certainly if the milter is rejecting valid email addresses, that
should be documented prominately at a minimum.  I'd say no excuse for
that...

>> Otherwise, your tool becomes irritating or possibly even harmful.
>
> Using one tool to fix the deficiencies in another tool is bad security...
> oh... wait a minute... that's the basis of the entire virus-scanning
> industry. :-(

Finally, a reply to my messages that I can appreciate. :)

-- 
Eric Rostetter
The Department of Physics
The University of Texas at Austin

Go Longhorns!
_______________________________________________
Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net
http://lurker.clamav.net/list/clamav-users.html

Reply via email to