First published: Fri Sep 06 2019(Updated: )
It was discovered that Exim incorrectly handled certain decoding operations. A remote attacker could possibly use this issue to execute arbitrary commands.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/exim4-daemon-heavy | <4.92-4ubuntu1.3 | 4.92-4ubuntu1.3 |
=19.04 | ||
All of | ||
ubuntu/exim4-daemon-light | <4.92-4ubuntu1.3 | 4.92-4ubuntu1.3 |
=19.04 | ||
All of | ||
ubuntu/exim4-daemon-heavy | <4.90.1-1ubuntu1.4 | 4.90.1-1ubuntu1.4 |
=18.04 | ||
All of | ||
ubuntu/exim4-daemon-light | <4.90.1-1ubuntu1.4 | 4.90.1-1ubuntu1.4 |
=18.04 | ||
All of | ||
ubuntu/exim4-daemon-heavy | <4.86.2-2ubuntu2.5 | 4.86.2-2ubuntu2.5 |
=16.04 | ||
All of | ||
ubuntu/exim4-daemon-light | <4.86.2-2ubuntu2.5 | 4.86.2-2ubuntu2.5 |
=16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of the Exim vulnerability is USN-4124-1.
The Exim vulnerability allows remote attackers to execute arbitrary commands.
The Exim vulnerability affects Ubuntu versions 19.04, 18.04, and 16.04.
To fix the Exim vulnerability, update the exim4-daemon-heavy and exim4-daemon-light packages to version 4.92-4ubuntu1.3 for Ubuntu 19.04, version 4.90.1-1ubuntu1.4 for Ubuntu 18.04, and version 4.86.2-2ubuntu2.5 for Ubuntu 16.04.
You can find more information about the Exim vulnerability at the following references: 1. https://ubuntu.com/security/CVE-2019-15846 2. https://launchpad.net/bugs/1843041 3. https://ubuntu.com/security/notices/USN-4124-2