Vsevolod Stakhov [Fri, 16 Feb 2018 13:47:47 +0000 (13:47 +0000)]
Release 1.6.6
* [CritFix] Add sanity guards for badly broken HTML
* [CritFix] Another errors path handling fix
* [CritFix] Fix ARC chain verification
* [CritFix] Fix crash in milter errors handler
* [Feature] Allow to insert headers into specific position
* [Feature] Allow to receive signing keys from mempool vars
* [Feature] Authentication-Results: support hiding usernames
* [Fix] Another try to deal with #1998
* [Fix] Another try to fix #1998
* [Fix] Better handling of the legacy protocol
* [Fix] Check decoded headers sanity (e.g. by excluding \0)
* [Fix] Deal with nan and inf encoding in json/ucl
* [Fix] Deal with URLs wrapped in [] in text parts
* [Fix] DKIM signing: allow for auth_only to be false
* [Fix] Do not crash on empty subtype
* [Fix] Do not fail rbl plugin when there are no received or emails
* [Fix] Do not skip the last character
* [Fix] Do not try to dereference last character
* [Fix] Do not try to sign unknown domains
* [Fix] Exim Received header protocol parsing
* [Fix] First load selector_map and path_map. And only return false when domain not found if try_fallback is false
* [Fix] Fix bad archive characters stripping
* [Fix] Fix comparision
* [Fix] Fix connecting to a unix socket in rspamadm statconvert
* [Fix] Fix empty headers simple canonicalization
* [Fix] Fix extra hits in PCRE mode for regular expressions
* [Fix] Fix parsing of the per-user script
* [Fix] Fix processing of skip-hashes in fuzzy storage
* [Fix] Fix Redis timeout setup
* [Fix] Fix sanity checks on macro value
* [Fix] Fix text splitting: stack overflow (too many captures)
* [Fix] Fix urls/emails distinguishing found in queries
* [Fix] F-PROT Antivirus: only check return code to determine infection
* [Fix] Metadata exporter: check IP sanity
* [Fix] Multimap: received: filtering of artificial header
* [Fix] Plan new event on HTTP errors
* [Fix] Plug another possible memory leak
* [Fix] Remove hop-by-hop headers in proxy
* [Fix] Sanitize IP in history redis
* [Fix] Setting check_local / check_authed in plugins (#1954)
* [Fix] Settings: avoid checking invalid IP (#1981)
* [Fix] Try harder in passing IPv6 addresses
* [Fix] WebUI: use relative path for savemap (#1943)
* [WebUI] Fix message count in throughput summary (#1724)
* [WebUI] Fix NaNs display on Throughput graph
* [WebUI] Restore passwordless login support (#2003)
Arne Fahrenwalde [Mon, 29 Jan 2018 08:41:00 +0000 (09:41 +0100)]
[Fix] F-PROT Antivirus: only check return code to determine infection
F-PROT Antivirus uses return codes 1-3 (infected, suspicious, both) to signal an infection, while 4-255 are various error codes (including infected files were found before the error occured, but it's too complicated to handle all that edge case scenarios).
Conflicts:
src/plugins/lua/antivirus.lua
Vsevolod Stakhov [Sun, 22 Oct 2017 16:16:54 +0000 (17:16 +0100)]
Release 1.6.5
* [CritFix] Another portion of tokenization fixes
* [CritFix] Fix memory leak in spf caching logic
* [CritFix] Fix milter commands pipelining
* [CritFix] Fix newlines detection
* [Feature] Filter nan and inf when adding scores
* [Feature] Implement headers flags in mime parser
* [Feature] Support Expires header when using HTTP maps
* [Fix] Actively load skip hashes map in fuzzy storage
* [Fix] Add workaround for IPv6 in sendmail
* [Fix] Authentication Results: Fix SPF smtp.mail_from
* [Fix] Check for magic when checking for an archive
* [Fix] Deal with another case when processing exceptions
* [Fix] Deal with URLs with no slashes after protocol
* [Fix] Do not allow garbadge when checking url domain
* [Fix] Do not ignore short words
* [Fix] Do not strip last character in the last word
* [Fix] Do not treat script content as text
* [Fix] Erase unknown HTML entities
* [Fix] Fix another tokenization issue
* [Fix] Fix DKIM forgeries via multiple headers
* [Fix] Fix emails detection
* [Fix] Fix empty threshold check in greylisting module
* [Fix] Fix enormous scores for R_WHITE_ON_WHITE
* [Fix] Fix loading of per-user redis backend for statistics
* [Fix] Fix multiple headers in DKIM headers list
* [Fix] Fix obscured url in format user@@example.com
* [Fix] Further tokenization fixes
* [Fix] Load skip map from all processes as shared cache is unavailable
* [Fix] Lowercase words
* [Fix] Milter headers: skip_local / skip_authenticated settings
* [Fix] Milter headers: X-Spamd-Result header if X-Virus ran first
* [Fix] Ratelimit: fix whitelisted_rcpts matching
* [Fix] Some more fixes towards emails detection
* [Fix] SpamAssassin: Fail check_freemail_header if regexp didn't match
* [Fix] Use greylisting threshold in greylisting module