Lucene search

K
msrcMicrosoft Security Response CenterMSRC:143E928D2AB55AAFB38D0E001ACA1ACC
HistoryJun 13, 2019 - 7:00 a.m.

Prevent the impact of a Linux worm by updating Exim (CVE-2019-10149)

2019-06-1307:00:00
Microsoft Security Response Center
link
23

0.974 High

EPSS

Percentile

99.9%

This week, MSRC confirmed the presence of an active Linux worm leveraging a critical Remote Code Execution (RCE) vulnerability, CVE-2019-10149, in Linux Exim email servers running Exim version 4.87 to 4.91. Microsoft Azure infrastructure and Services are not affected; only customer’s Linux IaaS instances running a vulnerable version of Exim are affected.