Exim before 4.95 has a heap-based buffer overflow for the alias list in host_name_lookup in host.c when sender_host_name is set.
2022-08-07T18:15:08.343
2024-11-21T07:15:00.573
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | exim | exim | < 4.95 | Yes |
Operating System | debian | debian_linux | 10.0 | Yes |