[Esd-l] ANN: Procmail Sanitizer 1.139 is released

Sun Sep 7 17:48:26 PDT 2003

The procmail sanitizer has been updated. The current version is 1.139
It is available via:

US/WA:  http://www.impsec.org/email-tools/procmail-security.html
US/WA:  http://eucleides.com/sanitizer/procmail-security.html
EU/NL:  http://kanon.net/~jhardin/email-tools/procmail-security.html
#EU/NO:  http://jhardin.oftedal.no/email-tools/procmail-security.html
#AU:     http://grebopple.accessunited.com.au/email-tools/procmail-security.html
#AU:     http://impsec.fuzzitech.net/email-tools/procmail-security.html

Direct links to the current tarball:

US/WA:  http://www.impsec.org/email-tools/procmail-sanitizer.tar.gz
US/WA:  http://eucleides.com/sanitizer/procmail-sanitizer.tar.gz
EU/NL:  http://kanon.net/~jhardin/email-tools/procmail-sanitizer.tar.gz
#EU/NO:  http://jhardin.oftedal.no/email-tools/procmail-sanitizer.tar.gz
#AU:     http://grebopple.accessunited.com.au/email-tools/procmail-sanitizer.tar.gz
#AU:     http://impsec.fuzzitech.net/email-tools/procmail-sanitizer.tar.gz

("commented out" mirrors are temporarily out-of-sync or unavailable)

0c636b1daf96bf12ca188059df43e952  html-trap.procmail
d29c4f6acfbdefed509d88f88f4cdbd3  html-trap.procmail.nomacroscan
2de26938631957065bdcfdf442d2f645  procmail-sanitizer.tar.gz

- From the changelog:
09/07/2003 (1.139)
Sanitize bare CR in message headers (Outlook bug).
Sanitize multiple null addresses (sendmail exploit).
Improve the UUE exclusion of the HTML defanger.
Permit spaces after MIME type in MIME headers.
Override csh use, as it is sanitizer-hostile.
Add Microsoft Office Suite VBE buffer overflow attacks to macro scanner.

The sanitizer home page is at

The archive of the sanitizer discussion list is at

The Microsoft Office VBE BO attack detection is the primary attraction
of this release.

