Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30344
HistoryMay 04, 2021 - 10:34 p.m.

Information Disclosure

2021-05-0422:34:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14
exim4
vulnerability
smtp_setup_msg
remote attacker
out-of-bounds read error
memory contents

EPSS

0.002

Percentile

53.8%

exim4 is vulnerable to information disclosure. The vulnerability exists due to a boundary condition in smtp_setup_msg() function. A remote attacker can send specially crafted message to the system, trigger out-of-bounds read error and read contents of memory on the system.