First published: Sat Aug 06 2022(Updated: )
Exim before 4.96 has an invalid free in pam_converse in auths/call_pam.c because store_free is not used after store_malloc.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
sa-exim | <4.96 | |
Fedora | =35 | |
Fedora | =36 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-37451.
The severity of CVE-2022-37451 is high with a severity value of 7.5.
The affected software for CVE-2022-37451 is Exim before 4.96 and Fedora versions 35 and 36.
You can fix CVE-2022-37451 by updating Exim to version 4.96 or applying the necessary updates for Fedora versions 35 and 36.
You can find more information about CWE-763 at the Mitre website.