Bug#343085: exim4: Exim SMTP_AUTH hangs since today...

Sven Hartge sven at svenhartge.de
Mon Jan 30 15:40:06 UTC 2006


Florian Weimer wrote:
> * Florian Weimer:

>> It's the generation of the special server-side key used to support
>> "RSA export" clients which use 40-bit symmetric session keys.

> Turns out the patch was broken.  This one should be better.  The
> comments above still apply.

Will this patch be included in the next point release of Sarge or better
yet released via a security update, since it is trivial to DoS Exim4
from Sarge with some single SSL/TLS connections?

Grüße,
Sven.

-- 
Sven Hartge -- professioneller Unix-Geek
Meine Gedanken im Netz: http://www.svenhartge.de/

Achtung, neue Mail-Adresse: sven at svenhartge.de




More information about the Pkg-exim4-maintainers mailing list