This is the patch I am currently using, for qmail-smtpd.c . I don't dare to touch RFC because I did not carefully read qmail sources and I am not aware of details/impact.

I think this patch is good enough to simply remove the vulnerability.

I now looked more thoroughly at the code and ask other's opinions. I think this is really ok patch..

Regards,
Alin.



318a319
>       ++pos;
320d320
<       ++pos;
_______________________________________________
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-hackers
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to