Vasiliy Kotikov writes:

Hello!

I receive mails from courier cron with
/usr/bin/maildrop: 60 Time(s)
I have searched maillogs and found such kind of errors:

Feb 24 02:58:37 ns courierlocal: id=0004A604.47C03DB9.000072AF,from=<<URL:mailto:[EMAIL PROTECTED]>M [EMAIL PROTECTED]>,addr=<<URL:mailto:[EMAIL PROTECTED]>[EMAIL PROTECTED] a.ru>: sh: -c: line 0: unexpected EOF while looking for matching `'' Feb 24 02:58:37 ns courierlocal: id=0004A604.47C03DB9.000072AF,from=<<URL:mailto:[EMAIL PROTECTED]>M [EMAIL PROTECTED]>,addr=<<URL:mailto:[EMAIL PROTECTED]>[EMAIL PROTECTED] a.ru>: sh: -c: line 1: syntax error: unexpected end of file Feb 24 02:58:37 ns courierlocal: id=0004A604.47C03DB9.000072AF,from=<<URL:mailto:[EMAIL PROTECTED]>M [EMAIL PROTECTED]>,addr=<<URL:mailto:[EMAIL PROTECTED]>[EMAIL PROTECTED] a.ru>: maildrop: error writing to filter. Feb 24 02:58:37 ns courierlocal: id=0004A604.47C03DB9.000072AF,from=<<URL:mailto:[EMAIL PROTECTED]>M [EMAIL PROTECTED]>,addr=<<URL:mailto:[EMAIL PROTECTED]>[EMAIL PROTECTED] a.ru>: /usr/bin/maildrop: Unable to filter message. Feb 24 02:58:37 ns courierlocal: id=0004A604.47C03DB9.000072AF,from=<<URL:mailto:[EMAIL PROTECTED]>M [EMAIL PROTECTED]>,addr=<<URL:mailto:[EMAIL PROTECTED]>[EMAIL PROTECTED] a.ru>,status: deferred
Feb 24 02:58:37 ns courierd: completed,id=0004A604.47C03DB9.000072AF

What could cause this error?

A broken shell script that you have invoked from your maildrop recipe.

    if ( $RETURNCODE == 0 )
    {
        SUBJECT=`/usr/bin/reformail -x Subject:`
        xfilter "/usr/bin/reformail -A'Subject: *****SPAM***** ${SUBJECT}'"
    }

There you go.

Really, before you go off and write obfuscated mail handling scripts, you really need to take some lessons in system security.

Consider what the above code will do when someone sends you the following E-mail message:

Subject: You're 0wned '`rm -rf $HOME`'


Attachment: pgpCKPxdet80h.pgp
Description: PGP signature

-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2008.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
courier-users mailing list
[email protected]
Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users

Reply via email to