Bugfix (defect introduced: Postfix 3.10): Postfix SMTP
client segfault while reporting a 'certificate expired'
event. Problem reported by Oemer Gueven. File: tls/tls_verify.c.
+
+20250221
+
+ Bugfix (defect introduced: 20250210): a recent 'fix' for the
+ default smtp_tls_dane_insecure_mx_policy setting resulted in
+ unnecessary 'dnssec_probe' warnings, on systems that disable
+ DNSSEC lookups (the default). File: smtp/smtp_addr.c.
* Patches change both the patchlevel and the release date. Snapshots have no
* patchlevel; they change the release date only.
*/
-#define MAIL_RELEASE_DATE "20250217"
-#define MAIL_VERSION_NUMBER "3.10.0"
+#define MAIL_RELEASE_DATE "20250224"
+#define MAIL_VERSION_NUMBER "3.10.1"
#ifdef SNAPSHOT
#define MAIL_VERSION_DATE "-" MAIL_RELEASE_DATE
if (mx_names->dnssec_valid)
res_opt = RES_USE_DNSSEC;
#ifdef USE_TLS
- else if (smtp_tls_insecure_mx_policy > TLS_LEV_MAY)
+ else if (smtp_tls_insecure_mx_policy > TLS_LEV_MAY
+ && smtp_dns_support == SMTP_DNS_DNSSEC)
res_opt = RES_USE_DNSSEC;
#endif