It is a bug in the program, though, and not particularly in the client library.  As mentioned, it can even be useful for testing servers.

In the email package we faithfully reproduce such headers if they are passed in.  The only one we disallow is something that looks like a field label preceded by a newline, since that could be used for a header injection attack if the field value comes from user input.
