SIGN IN SIGN UP

[3.10] gh-121284: Fix email address header folding with parsed encoded-word (GH-122754) (GH-131411)

Email generators using email.policy.default may convert an RFC 2047
encoded-word to unencoded form during header refolding. In a structured
header, this could allow 'specials' chars outside a quoted-string,
leading to invalid address headers and enabling spoofing. This change
ensures a parsed encoded-word that contains specials is kept as an
encoded-word while the header is refolded.

[Better fix from @bitdancer.]

(cherry picked from commit 295b53df2aa18deb625a7da41f7e4babfe6ef34b)

Co-authored-by: Mike Edmunds <medmunds@gmail.com>
Co-authored-by: R David Murray <rdmurray@bitdance.com>
P
Petr Viktorin committed
cfaee20d7eaa1442c1a22ef695e60ac5660bfecd
Parent: 48f455e
Committed by GitHub <noreply@github.com> on 4/3/2025, 4:27:20 PM