[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Procmail Rules for Debian lists



On Tue, Apr 09, 2002 at 03:50:54AM -0700, Karsten M. Self wrote:
>     :0:
>     * ^X-Mailing-List: <\/[^@<>]+
>     $LISTDIR/$MATCH/

As has been noted[1] in another thread on the same subject on
debian-devel: this is dangerous. Someone could just send an email with

    X-Mailing-List: <../something>

in its headers to overwrite your file ~/something (and try other
variations if that didn't work).

[1] See:
http://lists.debian.org/debian-devel/2002/debian-devel-200202/msg02132.html

-- 
Note that I use Debian version 3.0
Linux mus 2.4.17mvz4 #1 Fri Mar 15 23:30:15 CET 2002 i686 unknown

Matijs
			    "The site .co.uk wants to set a cookie.
			    Do you want to allow it?"


-- 
To UNSUBSCRIBE, email to debian-user-request@lists.debian.org 
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org



Reply to: