Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 727564

Summary: mail-mta/exim-4.94 pam expansion fails on tainted data
Product: Gentoo Linux Reporter: Stefan Schmiedl <s>
Component: Current packagesAssignee: Gentoo Linux bug wranglers <bug-wranglers>
Status: RESOLVED DUPLICATE    
Severity: major    
Priority: Normal    
Version: unspecified   
Hardware: AMD64   
OS: Linux   
URL: https://bugs.exim.org/show_bug.cgi?id=2587
Whiteboard:
Package list:
Runtime testing required: ---

Description Stefan Schmiedl 2020-06-08 18:54:51 UTC
After updating exim from 4.93.0.4 to 4.94, PLAIN authentication fails with the error message "Taint mismatch, string_nextinlist: auth_call_pam 158"

Reproducible: Always

Steps to Reproduce:
1. Install exim 4.94
2. Try to authenticat with PLAIN against pam




I concur with the posting in the arch bug tracker
https://bugs.archlinux.org/task/66894
and with the final remark in https://bugs.exim.org/show_bug.cgi?id=2587#c2
Comment 1 Sam James archtester Gentoo Infrastructure gentoo-dev Security 2020-06-08 18:59:25 UTC
Please run `emerge --sync` and try -r1.

*** This bug has been marked as a duplicate of bug 727310 ***
Comment 2 Stefan Schmiedl 2020-06-08 19:20:30 UTC
it works.

TIL that this bugzilla by default only shows open bugs.

Thanks.