Re: [exim-dev] [Bug 1604] string-expansion method for reading environment variable

2015-05-17 Thread Jasen Betts
On 2015-05-17, ad...@bugs.exim.org wrote: > https://bugs.exim.org/show_bug.cgi?id=1604 > > --- Comment #1 from Jeremy Harris --- > Is there a security implication, as a setuid program trusting environment info > set up by its callers? No more than trusting command-line arguments, or input (eg em

[exim-dev] [Bug 1604] string-expansion method for reading environment variable

2015-05-17 Thread admin
https://bugs.exim.org/show_bug.cgi?id=1604 --- Comment #1 from Jeremy Harris --- Is there a security implication, as a setuid program trusting environment info set up by its callers? -- You are receiving this mail because: You are on the CC list for the bug. -- ## List details at https://lists

[exim-dev] [Bug 1632] misleading "rejected RCPT" logged for rcpt acl discard

2015-05-17 Thread admin
https://bugs.exim.org/show_bug.cgi?id=1632 Jeremy Harris changed: What|Removed |Added Status|NEW |ASSIGNED Assignee|ni...@exim.org