Exim.string_format.Remote.Code.Execution

description-logoDescription

This indicates an attack attempt against a Buffer Overflow vulnerability in the University of Cambridge Exim Server.
The vulnerability is caused by an error when the software handles a malicious email Header. It allows a remote attacker to execute arbitrary code via sending a crafted email.

affected-products-logoAffected Products

University of Cambridge Exim 4.70 and earlier.
Avaya Aura System Manager 6.1

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.
Denial of Service: Remote attackers can crash vulnerable systems.

recomended-action-logoRecommended Actions

Update to the most recent non-vulnerable version.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

References

SA40019