Hello, Package: dspam Version: 3.10.1+dfsg-3~bpo60+1
I've noticed that Dspam sends '530 5.2.0 Message is empty. Aborting.' while receiving some incorrect spam message with long long line, for example with length about 300K bytes: ________________________________________________________________ Content-Type: application/octet-stream; name="Pricediler.xls" Content-Transfer-Encoding: base64 Content-Disposition: attachment 0M8R4KGxGuEAAAAAAAAAAAAAAAAAAAAAPgADAP7/CQAGAAAAAAAAAAAAAAAJAAAATwQAAAAAAAAAEAAA/v///wAAAAD+////AAAAAEYEAA...(whole length of the line is about 300K bytes) ________________________________________________________________ In tcpdump capture: ___________________________________________________________________________________ 220 DSPAM LMTP 3.10.1 Ready LHLO xxx.xxxx.ru 250-xxx.xxxx.ru 250-PIPELINING 250-ENHANCEDSTATUSCODES 250-8BITMIME 250 SIZE MAIL FROM:<r...@xxx.xxxx.ru> SIZE=756528 RCPT TO:<pa...@xxx.xxxx.ru> DATA 250 2.1.0 OK 250 2.1.5 OK 354 Enter mail, end with "." on a line by itself Received: from xxx.xxxx.ru ([77.222.40.134]) .by xxx.xxxx.ru with smtp (Exim 4.77 (FreeBSD)) .(envelope-from <r...@xxx.xxxx.ru>) .id 1TGlVX-000IOX-ND .for pa...@xxx.xxxx.ru; Wed, 26 Sep 2012 10:54:08 +0400 Received: (qmail 12671 invoked by uid 1642); 26 Sep 2012 06:51:28 -0000 Date: 26 Sep 2012 06:51:28 -0000 Message-ID: <20120926065128.12670.qm...@xxx.xxxx.ru> To: pa...@xxx.xxxx.ru Subject: .....-.... from: "..." ".......-....." <xxx...@xxxx.com> X-Priority: 3 X-MSMail-Priority: Normal MIME-Version: 1.0 Content-Type: multipart/mixed; boundary=boundary Return-path: r...@xxx.xxxx.ru --boundary Content-Type: text/html; charset="windows-1251" Content-Transfer-Encoding: 8bit TEXT<br> TEXT<br> TEXT<br> <br> <br> <h3><b><i>TEXT<br> TEXT</i><br> xxxxxx.com</b></h3> --boundary Content-Type: application/octet-stream; name="xxxxx.xls" Content-Transfer-Encoding: base64 Content-Disposition: attachment 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 AAgAAAI0AAgAAACIAAgAAAA4AAgABALcBAgAAANoAAgAAADEAIgDIAAAA... ... 530 5.2.0 Message is empty. Aborting. ___________________________________________________________________________________ It causes MTA (exim in my case) to fail with 'Broken pipe' message for dspam router and use retries to send other emails to other recepients, so messages are deferred and delivered with delay. I configured Exim to drop such bad messages for now but I guess that Dspam should process these messages correctly too. Opened http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=688853 also. With regards, Andrey ------------------------------------------------------------------------------ Live Security Virtual Conference Exclusive live event will cover all the ways today's security and threat landscape has changed and how IT managers can respond. Discussions will include endpoint security, mobile security and the latest in malware threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/ _______________________________________________ Dspam-user mailing list Dspam-user@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/dspam-user