https://seclists.org/oss-sec/2026/q2/512: [EXIM-Security-2026-05-01.1] Security lease 4.99.3
Published May 12, 2026
·Updated
Affected Software
1 affected component
Exim Exim>=4.97<4.99.3
Frequently Asked Questions
1
What is the severity of EXIM-Security-2026-05-01.1?
The severity of EXIM-Security-2026-05-01.1 is critical due to a remotely reachable Use-After-Free vulnerability.
2
How do I fix EXIM-Security-2026-05-01.1?
To fix EXIM-Security-2026-05-01.1, update Exim to the latest version that addresses the vulnerability.
3
What versions of Exim are affected by EXIM-Security-2026-05-01.1?
EXIM-Security-2026-05-01.1 affects certain configurations of Exim prior to the patched version.
4
Can EXIM-Security-2026-05-01.1 be exploited remotely?
Yes, EXIM-Security-2026-05-01.1 can be exploited remotely, posing a significant security risk.
5
What is the nature of the vulnerability in EXIM-Security-2026-05-01.1?
The vulnerability in EXIM-Security-2026-05-01.1 is a Use-After-Free (UAF) which can lead to denial of service or code execution.