Lucene search

K
ubuntuUbuntuUSN-1135-1
HistoryMay 25, 2011 - 12:00 a.m.

Exim vulnerability

2011-05-2500:00:00
ubuntu.com
48

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.8

Confidence

Low

EPSS

0.066

Percentile

93.8%

Releases

  • Ubuntu 11.04
  • Ubuntu 10.10
  • Ubuntu 10.04

Packages

  • exim4 - metapackage to ease Exim MTA (v4) installation

Details

It was discovered that the Exim daemon did not correctly handle certain
DKIM identities. A remote attacker could send specially crafted email to
run arbitrary code as the Exim user.

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.8

Confidence

Low

EPSS

0.066

Percentile

93.8%