[Mailman-Developers] [Mailman-Announce] Mailman 2.1.15rc1released

Mark Sapiro mark at msapiro.net
Thu May 17 02:08:16 CEST 2012


Tim Rice wrote:
>
>Looking at the Changelog I see
>........
>2.1.15rc1 (15-May-2012)
>
>  Security
>
>    - Strengthened the validation of email addresses.
>......
>
>Having had many a web form tell me my keyword address was not valid, I
>thought I'd make sure the developers are aware of the address TMDA
>(http://tmda.net) can generate and use.
>
>Please make sure the validation routines allow addresses like these.
>someuser+keyword+mailman.793c93 at example.com
>someuser+sender+81c44a at example.com
>someuser+dated+1337369972.605ad6 at example.com


The above addresses will not be a problem. The only problem would be
local parts containing characters other than dot (.) that RFC 5322
defines as 'specials' which, strictly speaking, may appear in quoted
local parts, but which are not accepted by Mailman.

-- 
Mark Sapiro <mark at msapiro.net>        The highway is for gamblers,
San Francisco Bay Area, California    better use your sense - B. Dylan



More information about the Mailman-Developers mailing list