First published: Thu May 06 2021(Updated: )
Exim 4 before 4.94.2 allows Out-of-bounds Write because the main function, while setuid root, copies the current working directory pathname into a buffer that is too small (on some common platforms).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
sa-exim | >=4.00<4.94.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-28010 is a vulnerability that allows Out-of-bounds Write in Exim 4 before 4.94.2.
The severity of CVE-2020-28010 is high with a CVSS score of 7.8.
CVE-2020-28010 affects Exim 4 before 4.94.2 and allows Out-of-bounds Write due to a buffer overflow issue.
To fix CVE-2020-28010, update Exim to version 4.94.2 or later.
More information about CVE-2020-28010 can be found at the following references: [1] [2]