Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-2957

Опубликовано: 04 сент. 2014
Источник: debian

Описание

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
exim4fixed4.82.1-1package
exim4not-affectedsqueezepackage
exim4not-affectedwheezypackage

Примечания

  • https://lists.exim.org/lurker/message/20140528.122536.a31d60a4.en.html

  • EXPERIMENTAL_DMARC not enabled

Связанные уязвимости

ubuntu
больше 11 лет назад

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.

redhat
больше 11 лет назад

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.

nvd
больше 11 лет назад

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.

github
больше 3 лет назад

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.