The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via vectors involving BDAT commands.
CVSS Details
- CVSS 3.0 Base Score: 9.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade exim | Aug 22, 2024 | Nov 25, 2017 |
| Amazon_linux | — | Upgrade exim | Dec 22, 2017 | Nov 25, 2017 |
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | Nov 25, 2017 |
| Debian | — | Upgrade exim4 | Dec 5, 2017 | Nov 25, 2017 |
| Exim | — | Update Exim to the latest version | Dec 3, 2019 | Nov 25, 2017 |
| Gentoo Linux | — | Upgrade mail-mta/exim. | Mar 7, 2018 | Nov 25, 2017 |
| Smtp Exim | — | Upgrade Exim to version 4.90Disable the Exim ESMTP CHUNKING extension | Nov 28, 2017 | Nov 24, 2017 |
| Suse | — | Upgrade libspf2-develUpgrade eximonUpgrade libspf2-2Upgrade eximstats-htmlUpgrade eximUpgrade libspf2-tools | Dec 6, 2017 | Nov 25, 2017 |
| Ubuntu | — | Upgrade exim4-daemon-heavyUpgrade exim4-daemon-light | Nov 29, 2017 | Nov 25, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub