Postfix 2.0 Patchlevel 6 available (CA-2003-07)
[email protected] (Wietse Venema) Wed, 5 Mar 2003 21:41:07 -0500 (EST)
| Newsgroups | gmane.mail.postfix.announce |
|---|---|
| Message-ID | <20030306024107.3EF61BC071__4505.28761507503$1046918527@spike.porcupine.org> |
Postfix 2.0 patchlevel 6 intends to protect vulnerable Sendmail
systems against exploitation of a remote buffer overflow problem
that is described in CERT advisory CA-2003-07.
- Postfix now truncates non-address information in message address
headers (comments, etc.) to 250 characters per address. This should
rarely present a problem. Reportedly, junk mail from poorly written
software can trigger the protection, but that is no great loss.
- Some little fixes to documentation.
Stable release: ftp://ftp.porcupine.org/mirrors/postfix-release/official/
5685 Mar 5 21:32 postfix-2.0-patch06.gz
266422 Mar 5 20:52 postfix-2.0.6.HISTORY
41724 Mar 5 21:29 postfix-2.0.6.RELEASE_NOTES
1345009 Mar 5 21:33 postfix-2.0.6.tar.gz
152 Mar 5 21:33 postfix-2.0.6.tar.gz.sig
Snapshot release: ftp://ftp.porcupine.org/mirrors/postfix-release/experimental/
274406 Mar 5 20:48 postfix-2.0.6-20030305.HISTORY
8167 Mar 5 21:35 postfix-2.0.6-20030305.RELEASE_NOTES
1374709 Mar 5 21:35 postfix-2.0.6-20030305.tar.gz
152 Mar 5 21:35 postfix-2.0.6-20030305.tar.gz.sig
Soon to appear on the download mirror sites listed at
http://www.postfix.org/
Wietse