Phillip Szelat discovered that Exim, a mail transport agent, does not properly parse a multiline RFC 2231 header filename, allowing a remote attacker to bypass a $mime_filename based extension-blocking protection mechanism.
https://security-tracker.debian.org/tracker/DSA-5728-1
Continue reading...
https://security-tracker.debian.org/tracker/DSA-5728-1
Continue reading...

