CVE-2018-6789

Published: 07 February 2018

An issue was discovered in the base64d function in the SMTP listener in Exim before 4.90.1. By sending a handcrafted message, a buffer overflow may happen. This can be used to execute code remotely.

Priority

Medium

CVSS 3 base score: 9.8

Status

Package Release Status
exim4
Launchpad, Ubuntu, Debian
Upstream
Released (4.90.1)
Ubuntu 16.04 ESM (Xenial Xerus)
Released (4.86.2-2ubuntu2.3)
Ubuntu 14.04 ESM (Trusty Tahr)
Released (4.82-3ubuntu2.4)