-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Duncan Findlay writes:
> On Tue, Jul 19, 2005 at 12:09:12PM +0100, Gavin Love wrote:
> > I am wondering if this is a in the wild version of the remote DOS that
> > was reported against spamassassin previously and either the patch has
> > not been backported properly or the upstream have not fully patched
> > this problem.
> > 
> > due to the the large time between it starting and ending however I
> > have not been able to issolate an email which is causing this problem
> > yet.
> 
> The patch applied was the exact patch upstream used, and I have tested
> that 3.0.3-2 does fix the DoS with the test message I created from the
> original upstream bug report.
> 
> This must be something else.

that kind of memory usage suggests that incoming messages over 250k
in size are being scanned.  this is not recommended.

- --j.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)
Comment: Exmh CVS

iD8DBQFC3TYFMJF5cimLx9ARAndgAJ48UJaz4D0BNNMlHulG+a5f/pzgkQCfTF1U
MxX9zNYiSr9mQPWiSIxJ0F4=
=vp5I
-----END PGP SIGNATURE-----



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to