[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 1274-1] exim4 security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Package        : exim4
Version        : 4.80-7+deb7u6
CVE ID         : CVE-2018-6789
Debian Bug     : 890000

Meh Chang discovered a buffer overflow flaw in a utility function used
in the SMTP listener of Exim, a mail transport agent. A remote attacker
can take advantage of this flaw to cause a denial of service, or
potentially the execution of arbitrary code via a specially crafted
message.

For Debian 7 "Wheezy", this problem has been fixed in version
4.80-7+deb7u6.

We recommend that you upgrade your exim4 packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
-----BEGIN PGP SIGNATURE-----
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=IHeY
-----END PGP SIGNATURE-----


Reply to: