Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session that includes two MAIL commands in conjunction with a large message containing crafted headers, leading to improper rejection logging.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade eximUpgrade exim-saUpgrade exim-monUpgrade exim-doc | Dec 1, 2016 | Dec 14, 2010 |
| Debian | — | Upgrade exim4 | Jul 30, 2024 | Dec 14, 2010 |
| Exim | — | Upgrade Exim to version 4.70.0 | Dec 3, 2019 | Dec 14, 2010 |
| Gentoo Linux | — | Upgrade mail-mta/exim. | Oct 30, 2017 | Dec 14, 2010 |
| Oracle_linux | — | Upgrade eximUpgrade exim-monUpgrade exim-sa | Oct 16, 2024 | Dec 14, 2010 |
| Suse | — | Upgrade eximstats-htmlUpgrade eximonUpgrade exim | Feb 17, 2015 | Dec 14, 2010 |
| Ubuntu | — | Upgrade exim4-daemon-heavyUpgrade exim4-daemon-customUpgrade exim4-daemon-light | Nov 8, 2024 | Dec 14, 2010 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub