Staring at this:


$re = '\.' . $bad_exts . '\.*$';


This catches harmless example.com.pdf and more complicated things.

I have forgotten what evil can be done with a trailing dot, but before
I commit foolishness by changing $re, I thought I'd ask.


Joseph Brennan
Columbia University Information Technology

_______________________________________________
NOTE: If there is a disclaimer or other legal boilerplate in the above
message, it is NULL AND VOID.  You may ignore it.

Visit http://www.mimedefang.org and http://www.roaringpenguin.com
MIMEDefang mailing list [email protected]
http://lists.roaringpenguin.com/mailman/listinfo/mimedefang

Reply via email to