https://bugs.exim.org/show_bug.cgi?id=2609
--- Comment #5 from bagas ---
Problem resolved.
cat /usr/local/etc/exim/dkim_domains
dom.ru: key=/usr/local/etc/exim/dom.ru.key
dom1.ru: key=/usr/local/etc/exim/dom1.ru.key
dom2.ru: key=/usr/local/etc/exim/dom2.key
In exim config
https://bugs.exim.org/show_bug.cgi?id=2609
--- Comment #4 from bagas ---
(In reply to Jeremy Harris from comment #3)
> The same way you were, only using an untainted value for that file name.
Confused.
I reviewed the
https://www.exim.org/exim-html-current/doc/html/spec_html/index.html
https://bugs.exim.org/show_bug.cgi?id=2609
--- Comment #3 from Jeremy Harris ---
The same way you were, only using an untainted value for that file name.
--
You are receiving this mail because:
You are on the CC list for the bug.
--
## List details at
https://bugs.exim.org/show_bug.cgi?id=2609
--- Comment #2 from bagas ---
(In reply to Jeremy Harris from comment #1)
> This is a configuration issue. You may not use $sender_address_domain
> directly
> as part of the filename because it is supplied by a potential attacker.
> You need to
https://bugs.exim.org/show_bug.cgi?id=2609
Jeremy Harris changed:
What|Removed |Added
Resolution|--- |INVALID
Status|NEW