Hi

        I found some bug in dspam.cgi,lie in line 221,origin code as below:
$FORM{'signatureID'} = quotemeta($signature);
&ProcessFalsePositive();
        it is a bug , quotemeta will be called in ProcessFalsePositive function 
again ,
so if some signature like 7,478ef4d4150741031177895,after one quotemeta call 
,it will become 7\,478ef4d4150741031177895,
after another  quotemeta call ,it will become 7\\,478ef4d4150741031177895,the 
result is that it can't match any signature any more!

        regards!
stevenlee

Reply via email to