FS#48387 - [mailman] Content filtering breaks PGP Mime signed messages

Attached to Project: Community Packages
Opened by Levente Polyak (anthraxx) - Tuesday, 01 March 2016, 16:57 GMT
Last edited by Sébastien Luttringer (seblu) - Saturday, 05 March 2016, 13:51 GMT
Task Type Bug Report
Category Packages
Status Closed
Assigned To Sébastien Luttringer (seblu)
Architecture All
Severity High
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 1
Private No

Details

The mailman release 2.1.21 introduced a bug [0] with PGP/MIME signed messages. The content filter rewrites such mime definitions and ends up making signatures invalid because the content is altered.

As we also run this on our mailman setup, it affects our mailinglists. I'm not sure if severity "high" is ok, but i choose that because if we publish Arch Linux security advisories on the arch-security mailinglist then those advisories will have invalid signatures (which i think is pretty bad).

It would be gorgeous if you can backport the very simple fix [1] and release a new package so we can update our mailman and write advisories with valid signatures.

cheers,
Levente

[0] https://bugs.launchpad.net/mailman/+bug/1551075
[1] https://bazaar.launchpad.net/~mailman-coders/mailman/2.1/revision/1629
This task depends upon

Closed by  Sébastien Luttringer (seblu)
Saturday, 05 March 2016, 13:51 GMT
Reason for closing:  Fixed
Additional comments about closing:  mailman-2.1.21-2

Loading...