procmail
[Top] [All Lists]

Re: Outlook Exploit Filter?

2000-07-25 12:30:09
* Jan(_dot_)Niggemann(_at_)swl(_dot_)fh-heilbronn(_dot_)de 
<Jan(_dot_)Niggemann(_at_)swl(_dot_)fh-heilbronn(_dot_)de> [000725 09:58]:
Nevertheless, did I get this right:
RFC 821 / STD 010 indicate that MTAs must parse header fields and even
correct them, if necessary. That would mean with MTAs following STD
010 said exploit would be harmless?

First, 821 is about SMTP and not about message content (which includes
visible headers), as has been pointed out. 

Second,

  Date: Tue, 25 Jul 2000 13:36:57 +0200 (MET DST and lots more useless comment 
information and anything else I want to put in here)

is a perfectly well-formed header. That is, well-formed headers can be
made arbitrarily long by the addition of comments.

-- 
Rik

_______________________________________________
procmail mailing list
procmail(_at_)lists(_dot_)RWTH-Aachen(_dot_)DE
http://MailMan.RWTH-Aachen.DE/mailman/listinfo/procmail