[Simon Walter] Bug#506353: mailscanner: many scripts allow local users to overwrite arbitrary files, and more, via symlink attacks

Kai Schaetzl maillists at conactive.com
Thu Dec 4 13:31:29 GMT 2008


Simon.walter at hp-factory.de wrote on Thu, 4 Dec 2008 11:44:45 -0000 (UTC):

> which points to an A record...
> ... like CNAMEs are dangerous.

It doesn't matter what it is. The point is that RFC doesn't like it for MX 
records. That should be very well known to any server admin. And so some 
mailservers don't accept mail from such sources. 
I personally cannot see any connection between this and the chance of 
getting spam from that source. It's a good example of an anti-spam measure 
that is counter-productive. But you have to live with it and it's easy to 
fix it.

Kai

-- 
Kai Schätzl, Berlin, Germany
Get your web at Conactive Internet Services: http://www.conactive.com





More information about the MailScanner mailing list