[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4488-1 exim4 -- exim4

ID: oval:org.secpod.oval:def:604463Date: (C)2019-07-30   (M)2023-12-20
Class: PATCHFamily: unix




Jeremy Harris discovered that Exim, a mail transport agent, does not properly handle the ${sort } expansion. This flaw can be exploited by a remote attacker to execute programs with root privileges in non-default configurations where ${sort } expansion is used for items that can be controlled by an attacker.

Platform:
Debian 10.x
Debian 9.x
Product:
eximon4
exim4
Reference:
DSA-4488-1
CVE-2019-13917
CVE    1
CVE-2019-13917
CPE    3
cpe:/o:debian:debian_linux:9.0
cpe:/a:exim:exim
cpe:/o:debian:debian_linux:9.x

© SecPod Technologies