https://seclists.org/oss-sec/2025/q4/264: Update: EXIM-Security-2025-12-09.1: Exim 4.99: mote heap corruption
Published Dec 11, 2025
·Updated
Affected Software
1 affected component
Exim Exim
Frequently Asked Questions
1
What is the severity of EXIM-Security-2025-12-09.1?
The severity of EXIM-Security-2025-12-09.1 is critical due to the potential for remote code execution resulting from heap corruption.
2
How do I fix EXIM-Security-2025-12-09.1?
To fix EXIM-Security-2025-12-09.1, users should update to the patched version of Exim once it is available in the distribution repositories.
3
Which versions of Exim are affected by EXIM-Security-2025-12-09.1?
EXIM-Security-2025-12-09.1 affects Exim versions prior to the fixed release that addresses the heap corruption issue.
4
Who reported EXIM-Security-2025-12-09.1?
EXIM-Security-2025-12-09.1 was reported by Heiko Schlittermann along with a coordinated release schedule for the fix.
5
When was EXIM-Security-2025-12-09.1 published?
EXIM-Security-2025-12-09.1 was published on December 11, 2025.