Subject: CVS commit: [pkgsrc-2006Q1] pkgsrc/mail/sendmail
To: None <>
From: Lubomir Sedlacik <>
List: pkgsrc-changes
Date: 06/14/2006 21:06:26
Module Name:	pkgsrc
Committed By:	salo
Date:		Wed Jun 14 21:06:26 UTC 2006

Modified Files:
	pkgsrc/mail/sendmail [pkgsrc-2006Q1]: Makefile distinfo
Added Files:
	pkgsrc/mail/sendmail/patches [pkgsrc-2006Q1]: patch-aj patch-ak
	    patch-al patch-am

Log Message:
Pullup ticket 1700 - requested by adrianp
security fix for sendmail

Patch provided by the submitter.

   Module Name:		pkgsrc
   Committed By:	adrianp
   Date:		Wed Jun 14 18:53:54 UTC 2006

   Modified Files:
   	pkgsrc/mail/sendmail: Makefile distinfo
   Added Files:
   	pkgsrc/mail/sendmail/patches: patch-aj patch-ak patch-al patch-am

   Log Message:
   A malformed MIME structure with many parts can cause sendmail to
   crash while trying to send a mail due to a stack overflow,
   e.g., if the stack size is limited (ulimit -s).  This
   happens because the recursion of the function mime8to7()
   was not restricted.  The function is called for MIME 8 to
   7 bit conversion and also to enforce MaxMimeHeaderLength.
   To work around this problem, recursive calls are limited to
   a depth of MAXMIMENESTING (20); message content after this
   limit is treated as opaque and is not checked further.

To generate a diff of this commit:
cvs rdiff -r1.84.2.1 -r1.84.2.2 pkgsrc/mail/sendmail/Makefile
cvs rdiff -r1.27.2.1 -r1.27.2.2 pkgsrc/mail/sendmail/distinfo
cvs rdiff -r0 -r1.1.2.2 pkgsrc/mail/sendmail/patches/patch-aj \
    pkgsrc/mail/sendmail/patches/patch-ak \
cvs rdiff -r0 -r1.1.2.1 pkgsrc/mail/sendmail/patches/patch-am

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.