Lucene search

K
osvGoogleOSV:CVE-2020-28017
HistoryMay 06, 2021 - 1:15 p.m.

CVE-2020-28017

2021-05-0613:15:09
Google
osv.dev
11
exim 4
integer overflow
buffer overflow
receive_add_recipient
e-mail message
fifty million recipients
remote exploitation
resource consumption
software

AI Score

9.4

Confidence

High

EPSS

0.003

Percentile

65.1%

Exim 4 before 4.94.2 allows Integer Overflow to Buffer Overflow in receive_add_recipient via an e-mail message with fifty million recipients. NOTE: remote exploitation may be difficult because of resource consumption.