logoalt Hacker News

rs_rs_rs_rs_rsyesterday at 7:06 PM1 replyview on HN

The Calif people found a nice bug in a qmail fork(what I consider usable qmail) some weeks ago.


Replies

tptacekyesterday at 7:09 PM

Right, and that fork is the only version of qmail people still run, and the bug they found was extremely funny given Bernstein's original qmail design (it was, if I remember right, a popen(3) vulnerability --- something that never would have showed up in Bernstein's code, but that's what happens when code gets abandoned, it gets picked up by people who don't really understand it). But it's hard to charge that vulnerability against the original qmail design.

(I don't think anyone should run qmail.)

show 1 reply