Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-45185

3 месяца назад

Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbitrary code.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2026-45185

3 месяца назад

Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbitrary code.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2026-45185

3 месяца назад

Exim before 4.99.3, in certain GnuTLS configurations, has a remotely r ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-fhg4-whcv-f8v4

3 месяца назад

Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbitrary code.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2026-06520

3 месяца назад

Уязвимость функции ungetc() компонента BDAT/CHUNKING почтового сервера Exim, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
EPSS: Низкий
redos логотип

ROS-20260729-73-0034

12 дней назад

Уязвимость exim

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-45185

Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbitrary code.

CVSS3: 9.8
1%
Низкий
3 месяца назад
nvd логотип
CVE-2026-45185

Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbitrary code.

CVSS3: 9.8
1%
Низкий
3 месяца назад
debian логотип
CVE-2026-45185

Exim before 4.99.3, in certain GnuTLS configurations, has a remotely r ...

CVSS3: 9.8
1%
Низкий
3 месяца назад
github логотип
GHSA-fhg4-whcv-f8v4

Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbitrary code.

CVSS3: 9.8
1%
Низкий
3 месяца назад
fstec логотип
BDU:2026-06520

Уязвимость функции ungetc() компонента BDAT/CHUNKING почтового сервера Exim, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
1%
Низкий
3 месяца назад
redos логотип
ROS-20260729-73-0034

Уязвимость exim

CVSS3: 9.8
1%
Низкий
12 дней назад

Уязвимостей на страницу