diff options
author | Jeremy Harris <jgh146exb@wizmail.org> | 2020-07-09 15:30:55 +0100 |
---|---|---|
committer | Jeremy Harris <jgh146exb@wizmail.org> | 2020-07-09 18:09:04 +0100 |
commit | 3c90bbcdc7cf73298156f7bcd5f5e750e7814e72 (patch) | |
tree | aaa4c4129824489d5ccc5b505c3bc07bf6b5c960 /doc/doc-txt | |
parent | d78e97406b4d15e53a9eeb345ac07dc2fa69689e (diff) |
Fix taint trap in parse_fix_phrase(). Bug 2617
Diffstat (limited to 'doc/doc-txt')
-rw-r--r-- | doc/doc-txt/ChangeLog | 6 |
1 files changed, 6 insertions, 0 deletions
diff --git a/doc/doc-txt/ChangeLog b/doc/doc-txt/ChangeLog index 8d368c8f3..6d688d1b4 100644 --- a/doc/doc-txt/ChangeLog +++ b/doc/doc-txt/ChangeLog @@ -86,6 +86,12 @@ JH/17 Bug 2295: Fix DKIM signing to always semicolon-terminate. Although the intended but triggered by a line-wrap alignement. Discovery and fix by Guillaume Outters, hacked on by JH. +JH/18 Bug 2617: Fix a taint trap in parse_fix_phrase(). Previously when the + name being quoted was tainted a trap would be taken. Fix by using + dynamicaly created buffers. The routine could have been called by a + rewrite with the "h" flag, by using the "-F" command-line option, or + by using a "name=" option on a control=submission ACL modifier. + Exim version 4.94 ----------------- |