summaryrefslogtreecommitdiff
path: root/doc/doc-txt/ChangeLog
diff options
context:
space:
mode:
authorJeremy Harris <jgh146exb@wizmail.org>2020-03-29 20:59:49 +0100
committerJeremy Harris <jgh146exb@wizmail.org>2020-03-29 22:25:58 +0100
commit129a5d133927ff8fa4b3f941f83c022d2daf18f3 (patch)
tree9d08dadc0a4176e5bc5147ab6cf744025b76a531 /doc/doc-txt/ChangeLog
parentd447dbd160a0fb503ed1e763f3f23d28744b6ddd (diff)
Dsearch: require absolute dirname
Diffstat (limited to 'doc/doc-txt/ChangeLog')
-rw-r--r--doc/doc-txt/ChangeLog5
1 files changed, 5 insertions, 0 deletions
diff --git a/doc/doc-txt/ChangeLog b/doc/doc-txt/ChangeLog
index 7e5de8880..9de2e1194 100644
--- a/doc/doc-txt/ChangeLog
+++ b/doc/doc-txt/ChangeLog
@@ -93,6 +93,7 @@ JH/20 Taint checking: disallow use of tainted data for
- the autoreply transport file, log and once options
- file names used by the redirect router (including filter files)
- named-queue names
+ - paths used by single-key lookups
Previously this was permitted.
JH/21 Bug 2501: Fix init call in the heimdal authenticator. Previously it
@@ -159,6 +160,10 @@ JH/33 Fix the dsearch lookup to return an untainted result. Previously the
JH/34 Fix the readsocket expansion to not segfault when an empty "options"
argument is supplied.
+JH/35 The dsearch lookup now requires that the directory is an absolute path.
+ Previously this was not checked, and nonempty relative paths made an
+ access under Exim's current working directory.
+
Exim version 4.93
-----------------