[Mailman-Developers] SCRUBBER Question

Robby Griffin rmg at terc.edu
Sat Sep 25 01:39:21 CEST 2004


On Friday, Sep 24, 2004, at 19:07 US/Eastern, Brad Knowles wrote:

> 	Leaving it as a ".doc" file when the MIME bodypart type does not 
> match the claimed extension *is* dangerous.

In mail, yes (and what does Mailman normally do to sanitize extensions 
/ MIME types in the messages it redistributes?). But on the web? I'm 
curious, what's the threat model?

	--Robby



More information about the Mailman-Developers mailing list