[Mailman-Users] Mime Exploit found in Mailman-2.1.2 source tarball

Rathan Levins rlevins at emitinc.com
Thu Jun 12 22:50:58 CEST 2003


Hello -

I downloaded the Mailman 2.1.2 tarball yesterday, and ran into an issue
with a virus scan.  McAfee commandline virus scan found
Exploit-MIME.gen, a generic MIME format "virus" that exploits the
"Microsoft Incorrect MIME Header vulnerability".  I downloaded the
source tarball yesterday, and the virus scanner hit on it after a
crontab job ran uvscan.  Below is the output when I scanned the suspect
file.

[root at emit_server msgs]# uvscan
/usr/local/src/mailman-2.1.2/tests/msgs/nimda.txt

/usr/local/src/mailman-2.1.2/tests/msgs/nimda.txt
        Found the Exploit-MIME.gen virus !!!


Is this an issue?  Is this the right forum for this question?  

I would like to install mailman as our company's mailing list manager,
but would like to understand this better.

Thanks,


Rathan Levins
Sys Admin
EMIT Inc.
www.emitinc.com





More information about the Mailman-Users mailing list