Vulnerabilities
Vulnerable Software
Exim:  >> Exim  >> 4.94.2  Security Vulnerabilities
Exim before 4.95 has a heap-based buffer overflow for the alias list in host_name_lookup in host.c when sender_host_name is set.
CVSS Score
9.8
EPSS Score
0.038
Published
2022-08-07
Exim before 4.96 has an invalid free in pam_converse in auths/call_pam.c because store_free is not used after store_malloc.
CVSS Score
7.5
EPSS Score
0.033
Published
2022-08-06
The STARTTLS feature in Exim through 4.94.2 allows response injection (buffering) during MTA SMTP sending.
CVSS Score
7.5
EPSS Score
0.02
Published
2021-08-10


Contact Us

Shodan ® - All rights reserved