PT-2026-36197 · Exim+3 · Exim+3
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Exim versions prior to 4.99.2
Description
An out-of-bounds read occurs when utf8 operators are enabled and malformed UTF-8 header data containing large UTF-8 trailing characters is processed. This issue may allow a remote attacker to cause sensitive information to be disclosed within an error message generated during the handling of an unrelated e-mail message.
Recommendations
Update to version 4.99.2 or later.
As a temporary workaround, disable utf8 operators to minimize the risk of exploitation.
Fix
DoS
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Exim
Linuxmint
Red Os
Ubuntu