[Esd-l] FW: [Full-Disclosure] Bypassing SMTP Content Protection with a Flick of a Button

John D. Hardin jhardin at impsec.org
Sat Sep 14 09:20:01 PDT 2002

On Fri, 13 Sep 2002, Zilvinas Atkociunas wrote:

> John D. Hardin wrote:
> >
> > The trivial solution is to block message/partial MIME types.
> > 
> > I suppose this increases the priority of MIME type support in the
> > poison list...
> Sorry for a dumb question: How can it be achieved ?

The sanitizer needs to pull out the MIME type in addition to the
filename, and check it against the poison or strip lists.

