https://issues.apache.org/SpamAssassin/show_bug.cgi?id=6408

           Summary: URIs with "http" not in lower-case are not detected
           Product: Spamassassin
           Version: 3.3.0
          Platform: PC
        OS/Version: Linux
            Status: NEW
          Severity: major
          Priority: P2
         Component: Libraries
        AssignedTo: [email protected]
        ReportedBy: [email protected]


I just got a spam with the following URI:

Http://bestwebcazinos.net/de

which is not extracted by SA. A quick test confirms that any uppercase letters
in the URI scheme prevent extraction, and therefore checking against URIBLs, of
an URI.

I suppose there's just a /i missing in some regex.

I'm setting this to "major" since it is very easy for spammers to bypass URI
checks this way.

regards,

cm.

-- 
Configure bugmail: 
https://issues.apache.org/SpamAssassin/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.

Reply via email to