CVE-2020-28010: High severity sa-exim vulnerability
Published May 6, 2021
·Updated
Exim 4 before 4.94.2 allows Out-of-bounds Write because the main function, while setuid root, copies the current working directory pathname into a buffer that is too small (on some common platforms).
Affected Software
1 affected component
Exim Exim>=4.00<4.94.2
Event History
May 6, 2021
CVE Published
via MITRE·03:17 AM
Data Sourced
via MITRE·03:17 AM
Description
Frequently Asked Questions
1
What is CVE-2020-28010?
CVE-2020-28010 is a vulnerability that allows Out-of-bounds Write in Exim 4 before 4.94.2.
2
What is the severity of CVE-2020-28010?
The severity of CVE-2020-28010 is high with a CVSS score of 7.8.
3
How does CVE-2020-28010 affect Exim?
CVE-2020-28010 affects Exim 4 before 4.94.2 and allows Out-of-bounds Write due to a buffer overflow issue.
4
How can I fix CVE-2020-28010?
To fix CVE-2020-28010, update Exim to version 4.94.2 or later.
5
Where can I find more information about CVE-2020-28010?
More information about CVE-2020-28010 can be found at the following references: [1] [2]