Date: Fri, 6 Dec 2002 14:16:39 -0300 From: Orden Nro 16442 <sistemas@fadapharma.com> To: <freebsd-isp@FreeBSD.ORG> Subject: Re: Sendmail + Milter + Amavis-Milter Message-ID: <007501c29d4b$3da6ba00$92660ac8@ms.vianetworks.net.ar> References: <011b01c29bb8$e84096f0$92660ac8_ms.vianetworks.net.ar@ns.sol.net> <3DEFEBE9.4030203@obluda.cz>
next in thread | previous in thread | raw e-mail | index | archive | help
Mmm i see it.,., I'm wanna use an antivirus for the incoming and outgoing mail. I'm using sendmail 8.12.6 .,., Any other idea than Amavis-Milter ----- Original Message ----- From: "Dan Lukes" <dan@obluda.cz> To: <freebsd-isp@FreeBSD.ORG> Sent: Thursday, December 05, 2002 9:14 PM Subject: Re: Sendmail + Milter + Amavis-Milter > hnunez@vianetworks.com.ar wrote, On 12/04/02 18:16: > > > Hi, > > > > I would like to setup Sendmail + Milter-ng + Amavis with milter > > interface. > > ... > > > cc -DAMAVISD_SOCKET=\"/var/run/amavis/milter.amavis\" > > -DRUNTIME_DIR=\"/var > > /spool/amavis\" -DPID_FILE=\"/var/run/amavis/amavis-milter.pid\" -o > > amavis-milter amavis-milter.c -L/usr/lib/libmilter/ -lmilter -lpthread > > Please note, the amavis-milter.c is poor quality code with several > potential bugs and race conditions including but not limited to two > buffer overflows (the remote exploitability is unknown) and unchecked > string allocations (strdup) with potential NULL dereferencing. > > I sent the list of those bugs with suggested patch to author of the > code, but got no response. Maybe, I know no correct place to sent the PR > to ... > > > I'm not sure if use of amavis-milter.c is real security risk (in doubth > we should answer "yes", of course), but I'm pretty sure it is > untrustable quick-hack-only quality code ... > > Dan > > -- > Dan Lukes tel: +420 2 21914205, fax: +420 2 21914206 > root of FIONet, KolejNET, webmaster of www.freebsd.cz > AKA: dan@obluda.cz, dan@freebsd.cz,dan@kolej.mff.cuni.cz > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-isp" in the body of the message > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-isp" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?007501c29d4b$3da6ba00$92660ac8>