This is a discussion on Re: [courier-users] Courier/SqWebMail 20050905 within the Courier-Imap forums, part of the Mail Servers and Related category; This is a MIME GnuPG-signed message. If you see this text, it means that your E-mail or Usenet ...
|
|||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
|
|||
|
This is a MIME GnuPG-signed message. If you see this text, it means that
your E-mail or Usenet software does not support MIME signed messages. The Internet standard for MIME PGP messages, RFC 2015, was published in 1996. To open this message correctly you will need to install E-mail or Usenet software that supports modern Internet standards. --=_mimegpg-commodore.email-scan.com-23985-1126144062-0005 Content-Type: text/plain; format=flowed; charset="US-ASCII" Content-Disposition: inline Content-Transfer-Encoding: 7bit Alessandro Vesely writes: > E.g. checking &xxx entities terminate with `;'? > > But there's no _hot_ security concern, is there? Just being proactive here -- in case MSIE, or something else -- misparses it in a way that could be exploited: &foo<script>... --=_mimegpg-commodore.email-scan.com-23985-1126144062-0005 Content-Type: application/pgp-signature Content-Transfer-Encoding: 7bit -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.6 (GNU/Linux) iD8DBQBDH5g+x9p3GYHlUOIRAirWAJ9ik3/zA9MipOW+p0WCBbDuzgSI9QCfSZY7 DW0W2F7m1c9UCfz3EjIzYTE= =4oCk -----END PGP SIGNATURE----- --=_mimegpg-commodore.email-scan.com-23985-1126144062-0005-- ------------------------------------------------------- SF.Net email is Sponsored by the Better Software Conference & EXPO September 19-22, 2005 * San Francisco, CA * Development Lifecycle Practices Agile & Plan-Driven Development * Managing Projects & Teams * Testing & QA Security * Process Improvement & Measurement * http://www.sqe.com/bsce5sf _______________________________________________ courier-users mailing list courier-users@lists.sourceforge.net Unsubscribe: https://lists.sourceforge.net/lists/.../courier-users |