https://seclists.org/oss-sec/2025/q4/275: Update: CVE-2025-67896: EXIM-Security-2025-12-09.1: Exim 4.99: mote heap corruption
Published Dec 14, 2025
·Updated
Affected Software
1 affected component
Exim Exim
Frequently Asked Questions
1
What is the severity of CVE-2025-67896?
CVE-2025-67896 has been classified as a critical vulnerability due to potential heap corruption leading to remote code execution.
2
How do I fix CVE-2025-67896?
To fix CVE-2025-67896, update to the latest patched version of Exim as specified in the official security advisories.
3
What versions of Exim are affected by CVE-2025-67896?
CVE-2025-67896 affects Exim version 4.99 and possibly earlier versions.
4
What impact does CVE-2025-67896 have on my systems?
The impact of CVE-2025-67896 can include unauthorized access and control over affected systems due to heap corruption.
5
Is there a workaround for CVE-2025-67896?
Currently, there are no known workarounds for CVE-2025-67896; upgrading to a secure version is the recommended approach.