[Esd-l] ANN: Sanitizer 1.133 released

John D. Hardin jhardin at impsec.org
Sat Jan 5 17:44:01 PST 2002

Hash: SHA1

The procmail sanitizer has been updated. The current version is 1.133
It is available via:

US:  http://www.impsec.org/email-tools/procmail-security.html
NO:  http://jhardin.oftedal.no/email-tools/procmail-security.html
AU:  http://grebopple.accessunited.com.au/email-tools/procmail-security.html
AU:  http://impsec.fuzzitech.net/~jhardin/email-tools/procmail-security.html

- From the changelog:

01/05/2002 (1.133)
Fixed bug in handling of some recursive multipart messages; this has
serious security implications, you should upgrade right away.
Fixed stripping of attachment-only MIME messages.
Added stripping of UUE attachments.
Added support for multiline status reports (for example, if multiple file
attachments are processed).
Made some cosmetic improvements in report messages.
Recoded some procmail and perl statements for minor efficiency gains.
Now truncate stripped and poisoned filespecs at space to allow for comments
in the poisoned- and stripped-filenames lists - if you are poisoning or
stripping filespecs containing spaces, MAKE SURE you use \s instead of a
literal space!

The sanitizer home page is at

Version: PGP 5.0
Charset: noconv


 John Hardin KA7OHZ    ICQ#15735746    http://www.impsec.org/~jhardin/
 jhardin at impsec.org                       pgpk -a jhardin at wolfenet.com
  768: 0x41EA94F5 - A3 0C 5B C2 EF 0D 2C E5  E9 BF C8 33 A7 A9 CE 76 
 1024: 0xB8732E79 - 2D8C 34F4 6411 F507 136C  AF76 D822 E6E6 B873 2E79
  Monty Python's Star Trek Voyager:
  A successful trans-warp experiment turns Paris and Janeway into
  newts, but they get better.
  ...wait a minute... It's already been done...
   14 days until Babylon 5: the Legend of the Rangers

More information about the esd-l mailing list