[Simon Walter] Bug#506353: mailscanner: many scripts allow local users to overwrite arbitrary files, and more, via symlink attacks

Brent Addis brent.addis at spit.gen.nz
Tue Dec 9 21:44:19 GMT 2008


I used to build them, but time got taken away from me (I have a family
now) I can look into it if theres enough interest?




On Tue, 2008-12-09 at 13:19 -0800, Scott Silva wrote:

> <snip>
> > 
> > Why doesn't someone create a deb for release with debian-volatile then?
> > 
> > This generally takes care of constantly updating packages like clam,
> > MailScanner should be there too.
> > 
> > We run debian-volatile anywhere  need stuff up to date (Such as
> > mailservers). It works very well.
> > 
> > 
> > - Brent
> > 
> Volunteering?
> 
> 
> 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.mailscanner.info/pipermail/mailscanner/attachments/20081210/078ae96b/attachment.html


More information about the MailScanner mailing list