Stack-based buffer overflow in Exim 4 before 4.33, when the headers_check_syntax option is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code during the header check.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade exim4 | Jul 30, 2024 | Jul 7, 2004 |
| Freebsd | — | Upgrade exim-ldap2Upgrade exim-mysqlUpgrade eximUpgrade exim-postgresql | Dec 10, 2025 | May 6, 2004 |
| Gentoo Linux | — | Upgrade mail-mta/exim. | Oct 30, 2017 | Jul 7, 2004 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub