[Esa-l] HTMLDropper - more details

John D. Hardin jhardin at wolfenet.com
Sun Jan 21 14:06:30 PST 2001

I've been talking with the people at malware who posted the initial
advisory about this. It seems that no MIME content is needed at all,
not even badly formatted MIME, just a very long subject line.

I don't have ready access to an Outlook client, so a proper fix for
this will have to wait, but it looks like the suggestion to include
the Subject: header in attachment filename checking is going to be the
most correct response.

A simpler response might be to limit the length of the Subject line to
a sane length, but then we get into the difficult area of defining
"what is sane"?

