From owner-cvs-all Sun Nov 24 2:50:22 2002 Delivered-To: cvs-all@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 797EA37B401; Sun, 24 Nov 2002 02:50:21 -0800 (PST) Received: from repoman.freebsd.org (repoman.freebsd.org [216.136.204.115]) by mx1.FreeBSD.org (Postfix) with ESMTP id 3A99343E3B; Sun, 24 Nov 2002 02:50:21 -0800 (PST) (envelope-from clive@FreeBSD.org) Received: from repoman.freebsd.org (localhost [127.0.0.1]) by repoman.freebsd.org (8.12.6/8.12.6) with ESMTP id gAOAkwmV058069; Sun, 24 Nov 2002 02:46:58 -0800 (PST) (envelope-from clive@repoman.freebsd.org) Received: (from clive@localhost) by repoman.freebsd.org (8.12.6/8.12.6/Submit) id gAOAkw1o058067; Sun, 24 Nov 2002 02:46:58 -0800 (PST) Message-Id: <200211241046.gAOAkw1o058067@repoman.freebsd.org> From: Clive Lin Date: Sun, 24 Nov 2002 02:46:58 -0800 (PST) To: cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org Subject: cvs commit: ports/mail/nullmailer/files patch-send.cc patch-sendmail.cc patch-smtp.cc X-FreeBSD-CVS-Branch: HEAD Sender: owner-cvs-all@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG clive 2002/11/24 02:46:58 PST Modified files: mail/nullmailer/files patch-send.cc Added files: mail/nullmailer/files patch-sendmail.cc patch-smtp.cc Log: Fix a possible denial of service vulnerability. After this patch, the action of piping mails out won't stop, even if all of your mails were failed to deliver. Nullmailer itself will keep throwing mails to smart relay as long as there're incoming mails, no matter how broken the recipients of the previous mails. Still leave this port in FORBIDDEN state until I address PR ports/45152 Obtained from: http://www.debian.org/security/2002/dsa-198 Noted by: Volker Stolz Revision Changes Path 1.2 +10 -0 ports/mail/nullmailer/files/patch-send.cc 1.1 +11 -0 ports/mail/nullmailer/files/patch-sendmail.cc (new) 1.1 +14 -0 ports/mail/nullmailer/files/patch-smtp.cc (new) To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe cvs-all" in the body of the message