https://seclists.org/oss-sec/2023/q4/51: Exim4 MTA CVEs assigned from ZDI
Published Oct 5, 2023
·Updated
Affected Software
2 affected components
Exim Exim 4
libspf2 libspf2
Frequently Asked Questions
1
What is the severity of CVE-2023-36867 in Exim4 MTA?
CVE-2023-36867 is categorized with a high severity level due to its potential to allow remote code execution.
2
How do I fix CVE-2023-36867 in Exim4 MTA?
To mitigate CVE-2023-36867, update Exim to a patched version provided by the vendor.
3
What systems are affected by CVE-2023-36867 in Exim4 MTA?
CVE-2023-36867 affects Exim version 4 and can compromise systems that utilize this mail transfer agent.
4
What is the CVSS score for CVE-2023-36867 in Exim4 MTA?
CVE-2023-36867 has a CVSS score of 8.0, indicating high severity and potential impact.
5
Are there any known exploits for CVE-2023-36867 in Exim4 MTA?
Yes, there are reports of active exploitation for CVE-2023-36867, emphasizing the need for immediate action.