[prev in list] [next in list] [prev in thread] [next in thread] 

List:       kmail-devel
Subject:    Re: Email address matching in KMReaderWin::strToHtml()
From:       Ingo =?iso-8859-1?q?Kl=F6cker?= <ingo.kloecker () epost ! de>
Date:       2002-04-19 20:29:50
[Download RAW message or body]

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Friday 19 April 2002 22:01, Marc Mutz wrote:
> On Friday 19 April 2002 20:24, Ingo Klöcker wrote:
> <snip>
>
> > We should be careful with completely removing the limit because
> > this could maybe be exploited somehow.
>
> <snip>
>
> How? The only thing would be buffer overflows, but they can be easily
> avoided with a little care.

Don't forget the 14 MB limit in one of the kioslaves which made it 
impossible to save huge attachments. Or imaging some bad guy sends you 
a message with a 1 million character URL. If you want to find out what 
would happen then remove the URL size restriction and try it.

> Are you thinking about the XFree bug with
> long lines that crashes KMail with long address lists?

I didn't think of anything in particular.

Regards,
Ingo

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iD8DBQE8wH4+GnR+RTDgudgRAmmmAJ9pYS2y+MtfTWTbz04n9na0mjzoZACgrvRN
tUHp73u+jbRHNUGV1NKChMA=
=Cfyj
-----END PGP SIGNATURE-----
_______________________________________________
KMail Developers mailing list
kmail@mail.kde.org
http://mail.kde.org/mailman/listinfo/kmail
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic