https://bugs.exim.org/show_bug.cgi?id=1837

--- Comment #9 from Jeremy Harris <[email protected]> ---
FWIW, opinion from a security bod (H.Kario) was:

(question was "is a small-subgroups attack relevant to SMTP?")

"only if the SMTP server is configured to allow TLS connections only, for
opportunistic encryption not really.   good to clean up, but not CVE worthy"

-- 
You are receiving this mail because:
You are on the CC list for the bug.
-- 
## List details at https://lists.exim.org/mailman/listinfo/exim-dev Exim 
details at http://www.exim.org/ ##

Reply via email to