https://bz.apache.org/SpamAssassin/show_bug.cgi?id=7869

--- Comment #7 from Aurel <[email protected]> ---
The To: header is present.

How to reproduce:
Open your email client, modify From name: instead of "Your Name" put something
like: "Your Name <[email protected]>" and send an email.
This should trigger the FrommMailSpoof but it doesn't

Or you can save any email you want, modify the FromName like above ant test it.

In fact if you put something like "Your Name | [email protected]" or any other
combination of "text + email" the plugin doesn't work.
I notice this in a production server: FronName where there is only an email
address trigger the plugin, others with 'text +email' doesn't
And the To header is present!

I think this plugin can be very important to stop spoofing. Last week a lot of
emails with emotet malware came with FrameName spoofing.
I am not very confident to put an email with all headers unaltered here, and as
I said you can reproduce the bug very easy.

Thank you

-- 
You are receiving this mail because:
You are the assignee for the bug.

Reply via email to