vulnerability

FreeBSD: VID-45bea6b5-8855-11e9-8d41-97657151f8c2 (CVE-2019-10149): Exim -- RCE in deliver_message() function

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jun 6, 2019
Added
Dec 10, 2025
Modified
Dec 10, 2025

Description

Exim team and Qualys report: We received a report of a possible remote exploit. Currently there is no evidence of an active use of this exploit. A patch exists already, is being tested, and backported to all versions we released since (and including) 4.87. The severity depends on your configuration. It depends on how close to the standard configuration your Exim runtime configuration is. The closer the better. Exim 4.92 is not vulnerable.

Solution

freebsd-upgrade-package-exim
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.