Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-40686

Опубликовано: 30 апр. 2026
Источник: debian

Описание

In Exim before 4.99.2, when utf8 operators are enabled, there is an out-of-bounds read if large UTF-8 trailing characters are present (malformed UTF-8 header data). Information might be divulged within an error message produced during handling of an unrelated e-mail message.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
exim4fixed4.99.2-1package
exim4postponedbullseyepackage

Примечания

  • Fixed by: https://code.exim.org/exim/exim/commit/f2570bde16fb4d4a1242ff363a4c4eecf6372efc

Связанные уязвимости

CVSS3: 3.7
ubuntu
3 месяца назад

In Exim before 4.99.2, when utf8 operators are enabled, there is an out-of-bounds read if large UTF-8 trailing characters are present (malformed UTF-8 header data). Information might be divulged within an error message produced during handling of an unrelated e-mail message.

CVSS3: 3.7
nvd
3 месяца назад

In Exim before 4.99.2, when utf8 operators are enabled, there is an out-of-bounds read if large UTF-8 trailing characters are present (malformed UTF-8 header data). Information might be divulged within an error message produced during handling of an unrelated e-mail message.

CVSS3: 3.7
github
3 месяца назад

In Exim before 4.99.2, when utf8 operators are enabled, there is an out-of-bounds read if large UTF-8 trailing characters are present (malformed UTF-8 header data). Information might be divulged within an error message produced during handling of an unrelated e-mail message.

CVSS3: 5.3
fstec
4 месяца назад

Уязвимость почтового сервера Exim, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 5.3
redos
6 дней назад

Уязвимость exim