Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-40684

Опубликовано: 30 апр. 2026
Источник: ubuntu
Приоритет: medium
CVSS3: 5.9

Описание

In Exim before 4.99.2, on systems using musl libc (not glibc), an attacker can crash the connection instance when malformed DNS data is present in PTR records. This is caused by a dn_expand oddity in octal printing.

РелизСтатусПримечание
devel

not-affected

see notes
esm-infra-legacy/trusty

not-affected

see notes
esm-infra-legacy/xenial

not-affected

see notes
esm-infra/bionic

not-affected

see notes
esm-infra/focal

not-affected

see notes
esm-infra/xenial

not-affected

see notes
jammy

not-affected

see notes
noble

not-affected

see notes
questing

not-affected

see notes
resolute

not-affected

see notes

Показывать по

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
nvd
4 месяца назад

In Exim before 4.99.2, on systems using musl libc (not glibc), an attacker can crash the connection instance when malformed DNS data is present in PTR records. This is caused by a dn_expand oddity in octal printing.

CVSS3: 5.9
debian
4 месяца назад

In Exim before 4.99.2, on systems using musl libc (not glibc), an atta ...

CVSS3: 7.5
redos
20 дней назад

Уязвимость exim

CVSS3: 5.9
github
4 месяца назад

In Exim before 4.99.2, on systems using musl libc (not glibc), an attacker can crash the connection instance when malformed DNS data is present in PTR records. This is caused by a dn_expand oddity in octal printing.

5.9 Medium

CVSS3