3 ms·
> would only have been exploitable if you explicitly configured your system to allow qmail to consume huge amounts of memory. Are you sure it's explicit (ie: c
by brl 18y ago
> would only have been exploitable if you explicitly configured your system to allow qmail to consume huge amounts of memory.
Are you sure it's explicit (ie: changing some qmail configuration file) rather than just depending on how the system-wide rlimits are set up?
Guninski claimed that following the exact instructions in the INSTALL file results in a vulnerable configuration (assuming the exploitable hardware configuration)
http://www.ornl.gov/lists/mailing-lists/qmail/2005/05/msg00838.html http://www.ornl.gov/lists/mailing-lists/qmail/2005/05/msg008...