Two new build options mitigate this.
* TRUSTED_CONFIG_LIST defines a file containing a whitelist of config
- files that are trusted to be selected by the Exim user; this is the
- recommended approach going forward.
+ files that are trusted to be selected by the Exim user; one per line.
+ This is the recommended approach going forward.
* WHITELIST_D_MACROS defines a colon-separated list of macro names which
the Exim run-time user may safely pass without dropping privileges.