For anybody who falls on this bug, PHP MUST BE disabled where hypermail outputs its files, or i guess someone can hack you by sending php files to the list and you will host those backdoors..! This bug is invalid and it highlights a dangerous config.
-- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org