diff options
author | V3n3RiX <venerix@redcorelinux.org> | 2021-05-04 22:28:33 +0100 |
---|---|---|
committer | V3n3RiX <venerix@redcorelinux.org> | 2021-05-04 22:28:33 +0100 |
commit | a978c074e4272bb901fbe4a10de0a7b2af574f17 (patch) | |
tree | 8c764c1cc0576389ce22abd317bceba71ea5732d /metadata/news | |
parent | 40aaaa64e86ba6710bbeb31c4615a6ce80e75e11 (diff) |
gentoo resync : 04.05.2021
Diffstat (limited to 'metadata/news')
-rw-r--r-- | metadata/news/2021-05-04-exim-transports-disallow-tainted/2021-05-04-exim-transports-disallow-tainted.en.txt | 28 | ||||
-rw-r--r-- | metadata/news/Manifest | 30 | ||||
-rw-r--r-- | metadata/news/Manifest.files.gz | bin | 10791 -> 10981 bytes | |||
-rw-r--r-- | metadata/news/timestamp.chk | 2 | ||||
-rw-r--r-- | metadata/news/timestamp.commit | 2 |
5 files changed, 45 insertions, 17 deletions
diff --git a/metadata/news/2021-05-04-exim-transports-disallow-tainted/2021-05-04-exim-transports-disallow-tainted.en.txt b/metadata/news/2021-05-04-exim-transports-disallow-tainted/2021-05-04-exim-transports-disallow-tainted.en.txt new file mode 100644 index 000000000000..f16e485b15d6 --- /dev/null +++ b/metadata/news/2021-05-04-exim-transports-disallow-tainted/2021-05-04-exim-transports-disallow-tainted.en.txt @@ -0,0 +1,28 @@ +Title: Exim>=4.94 transports: tainted not permitted +Author: Fabian Groffen <grobian@gentoo.org> +Posted: 2021-05-04 +Revision: 1 +News-Item-Format: 2.0 +Display-If-Installed: mail-mta/exim + +The Message Transfer Agent Exim disallows tainted variables in transport +configurations since version 4.94. Existing exim.conf configurations +in /etc/exim need to be reviewed for breakage prior to upgrading to + >=mail-mta/exim-4.94 to avoid error conditions at runtime. + +Since the release of Exim-4.94, transports refuse to use tainted data in +constructing a delivery location. If you use this in your transports, +your configuration will break, causing errors and possible downtime. + +Particularly, the use of $local_part in any transport, should likely be +updated with $local_part_data. Check your local_delivery transport, +which historically used $local_part. + +Unfortunately there is not much documentation on "tainted" data for +Exim[1], and to resolve this, non-official sources need to be used, such +as [2] and [3]. + + +[1] https://lists.exim.org/lurker/message/20201109.222746.24ea3904.en.html +[2] https://mox.sh/sysadmin/tainted-filename-errors-in-exim-4.94/ +[3] https://jimbobmcgee.wordpress.com/2020/07/29/de-tainting-exim-configuration-variables/ diff --git a/metadata/news/Manifest b/metadata/news/Manifest index 83f7106ec827..825382410b9d 100644 --- a/metadata/news/Manifest +++ b/metadata/news/Manifest @@ -1,23 +1,23 @@ -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 -MANIFEST Manifest.files.gz 10791 BLAKE2B 09f2380110aa789ac78721e30475f1299e4ad1c319c0ed4063528b8b340c6df850f9e35e6e70a46a047e16ce75eaa9e985e1d001f821e5e7f37d7e1fe907233d SHA512 ff6a62b432bda8c24c2bc9e3bee6d4c86e622637ab7796f81e9646b073e66fac67f4adcb5692f71f31fac9c31987ce0c3a4ee8ddd5532a3407abaeca2c2a8def -TIMESTAMP 2021-04-28T18:38:32Z +MANIFEST Manifest.files.gz 10981 BLAKE2B 37089747d3911b1d33e0a723fb2d6b84c843da0f4c2d0aeb1fa90822959a0660c7f49e7f8ebab0d457873603412165ce569528d2db0b1ae3cdabd63817619185 SHA512 756de9514ac752c4cbfabc98358b8fea9d6d33a38ab80bf828ddc3da22f4783a384897d9e7c88af5e2e9690fc1b93113db762e16a40909fd12da4b14c8b796e4 +TIMESTAMP 2021-05-04T21:09:06Z -----BEGIN PGP SIGNATURE----- -iQKTBAEBCgB9FiEE4dartjv8+0ugL98c7FkO6skYklAFAmCJq6hfFIAAAAAALgAo +iQKTBAEBCgB9FiEE4dartjv8+0ugL98c7FkO6skYklAFAmCRt/JfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEUx RDZBQkI2M0JGQ0ZCNEJBMDJGREYxQ0VDNTkwRUVBQzkxODkyNTAACgkQ7FkO6skY -klClNw/8D3t7UvuNmSbzaBHPg4QaqDI+2L2WL8KO/g8U804IBqnuxiZ+IfcU3n+D -w0V6pYY0rBSZ18DiMdIB1gd2lGMFXb5bmTtXuUwK3M0s5Pygr1qGD0jRDPOaOEOl -OzoSz/ZNvibcWHiJPELw+9OtijvKLJf2xv5LQc7a7YgEDlf9llDC/ajbHQKK4Uj4 -Md/DaNo7QjEpmSYfgLiAuxO+VSwIYK1KvWUF0dpImC7Lsd/PIn0OX/pgMmQzzS9P -6HFlKtTBh0VUQw+nauQNR7L5ZUl5aNdOeyo2ePacEeYBLh8MDxUR0bXMOcoFSCnf -gJ13gJsZEUV2cJ3EsY9P4I688PrLI/QDTUrJ5KOVZvxtF+I9cR+dtzt14Gnk1vfQ -MJVO7S9fU3ytMKIMBWhAlckZbaQscE3MIMKu2WRCuRUvGw5UZ/DDrxFtGDqLYKyq -sV47GwIz4eKBwePH9V809ThNcUsePkPvRnUa2aj3/Zo1ex/ViTuE9P2/CtEmQtQg -AriDq9dh9DSEgXEi33HPE6+RjH9CazpWfSshF10NymYvyfZy54BCn63zjcnY3ZI/ -k4c5l3YlzA8EsHVTmM+79VxdA4U/9QxiDIL9gOf0A9pGEtN5zg5bcZiCbUIaalKw -cpC73FYQB4m6b5qKd+eaCFabT2ziDPTxBrIoyIq5+11bhLn+ITY= -=xw92 +klBuFQ//b3Kd3IQ7CTT6e/nUPq/8P+/XycbsEVImibhWZLgT1zzjSd1+uG/kcsro +lZOMMGCG9YrJwDyEwXbVfeUmKFEqMbC0y/+7lYPV9XP5hDpv45cpaMIGK6kd6Fks +iOazPZjCCBf/2J0fx5bX/cA2gftEhHxx8ob8lgYTRwVutkgEny3Y6zeZluSfUzDP +1dmfh+jJo2ClN/lXuNUH3TCrEzN2odIkhmtZV0eQJ4Vc0NCYIgsy8X8gQCdNNfXl +XbabwWpueXM30hK9KwGSYG0xUoByaJp6iZuFsPttBW/YLEi2mqwRGh3kNsT2E2HL +4sJIYvsNjs7boDnyXQgf4b6kpje08PkDuwWAtKpMLs7p53eJu+nsLJ2pupNqCeII +JlT/J5ijyTbTSKlqHT0m4RQXDXQYKz+ytVvn7CuKdfLOcGx4TqxZNnN+Ox5gTto2 +aeA8eEUREvC3yKzLtbGmy8PYYEZwBnCVdflrJAGkG2LOYa9589ADw2/v+dHGDC+p +fRIzykvsU1nsD1Z3qTFaGZ8K2lTGkhpqcw9LsuHxCZjcwINHCn5mLaHR6K4RYMwJ +o/3R9LvIMzubGEli1EQygyi8TeC1w9qQXSVbPvlw8rgvd2FgWAwttdKzsK18w0V0 +L/Pl0OVt33eyrPRU76F5j6S0DRW7CaCKkvVQoSgfMEI3QG70iDs= +=LJwh -----END PGP SIGNATURE----- diff --git a/metadata/news/Manifest.files.gz b/metadata/news/Manifest.files.gz Binary files differindex 9d610bd03c64..a9069c6700e4 100644 --- a/metadata/news/Manifest.files.gz +++ b/metadata/news/Manifest.files.gz diff --git a/metadata/news/timestamp.chk b/metadata/news/timestamp.chk index 8e00199f4a7a..2d5a3dd5b3b6 100644 --- a/metadata/news/timestamp.chk +++ b/metadata/news/timestamp.chk @@ -1 +1 @@ -Wed, 28 Apr 2021 18:38:28 +0000 +Tue, 04 May 2021 21:09:02 +0000 diff --git a/metadata/news/timestamp.commit b/metadata/news/timestamp.commit index 6e64ac1aeb96..9d7063e9ec26 100644 --- a/metadata/news/timestamp.commit +++ b/metadata/news/timestamp.commit @@ -1 +1 @@ -c6ba82191f38ab46241df4b979f242ca31f9c8c4 1612553955 2021-02-05T19:39:15+00:00 +19be7376115b40b59b26846918a6bbd1587a314e 1620143013 2021-05-04T15:43:33+00:00 |