From 3d8d70290d1d75095959fd8bbaa5e3c91c154d9d Mon Sep 17 00:00:00 2001 From: marti Date: Fri, 6 May 2011 12:17:10 +0000 Subject: [PATCH] - patch resolving CVE-2011-1764 (remote vulnerability in DKIM) Changed files: exim-CVE-2011-1764.patch -> 1.1 --- exim-CVE-2011-1764.patch | 22 ++++++++++++++++++++++ 1 file changed, 22 insertions(+) create mode 100644 exim-CVE-2011-1764.patch diff --git a/exim-CVE-2011-1764.patch b/exim-CVE-2011-1764.patch new file mode 100644 index 0000000..2a2afd2 --- /dev/null +++ b/exim-CVE-2011-1764.patch @@ -0,0 +1,22 @@ +diff -ur exim-4.75-orig/src/dkim.c exim-4.75/src/dkim.c +--- exim-4.75-orig/src/dkim.c 2011-03-22 09:00:51.000000000 +0100 ++++ exim-4.75/src/dkim.c 2011-05-06 14:09:06.715883520 +0200 +@@ -108,7 +108,7 @@ + /* Log a line for each signature */ + uschar *logmsg = string_append(NULL, &size, &ptr, 5, + +- string_sprintf( "DKIM: d=%s s=%s c=%s/%s a=%s ", ++ string_sprintf( "d=%s s=%s c=%s/%s a=%s ", + sig->domain, + sig->selector, + (sig->canon_headers == PDKIM_CANON_SIMPLE)?"simple":"relaxed", +@@ -176,7 +176,7 @@ + } + + logmsg[ptr] = '\0'; +- log_write(0, LOG_MAIN, (char *)logmsg); ++ log_write(0, LOG_MAIN, "DKIM: %s", logmsg); + + /* Build a colon-separated list of signing domains (and identities, if present) in dkim_signers */ + dkim_signers = string_append(dkim_signers, +Tylko w exim-4.75/src: dkim.c~ -- 2.44.0