X-Git-Url: https://git.exim.org/exim.git/blobdiff_plain/e20e2d6d5e2dd50b29b785b3831be655138d046e..64469eb46f042bea1c12996d69c5fedd0bf44510:/doc/doc-txt/ChangeLog?ds=sidebyside diff --git a/doc/doc-txt/ChangeLog b/doc/doc-txt/ChangeLog index 5e1ff056a..fff417f05 100644 --- a/doc/doc-txt/ChangeLog +++ b/doc/doc-txt/ChangeLog @@ -15,6 +15,32 @@ JH/03 Bug 2269: When presented with a received message having a stupidly large number of DKIM-Signature headers, disable DKIM verification to avoid a resource-consumption attack. The limit is set at twenty. +JH/05 Bug 2273: Cutthrough delivery left a window where the received messsage + files in the spool were present and unlocked. A queue-runner could spot + them, resulting in a duplicate delivery. Fix that by doing the unlock + after the unlink. Investigation by Tim Stewart. + +JH/06 Bug 2275: The MIME ACL unlocked the received message files early, and + a queue-runner could start a delivery while other operations were ongoing. + Cutthrough delivery was a common victim, resulting in duplicate delivery. + Found and investigated by Tim Stewart. Fix by using the open message data + file handle rather than opening another, and not locally closing it (which + releases a lock) for that case, while creating the temporary .eml format + file for the MIME ACL. Also applies to "regex" and "spam" ACL conditions. + +JH/08 When generating a selfsigned cert, use serial number 1 since zero is not + legitimate. + +JH/09 Bug 2274: Fix logging of cmdline args when starting in an unlinked cwd. + Previously this would segfault. + +JH/10 Fix ARC signing for case when DKIM signing failed. Previously this would + segfault. + +JH/14 Bug 2284: Fix DKIM signing for body lines starting with a pair of dots. + +JH/16 Fix ARC verification to do AS checks in reverse order. + Exim version 4.91 -----------------