CVE-2018-6789

Priority
Medium
Description
An issue was discovered in the base64d function in the SMTP listener in
Exim before 4.90.1. By sending a handcrafted message, a buffer overflow may
happen. This can be used to execute code remotely.
References
Package
Source: exim4 (LP Ubuntu Debian)
Upstream:released (4.90.1)
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):released (4.82-3ubuntu2.4)
Ubuntu 16.04 LTS (Xenial Xerus):released (4.86.2-2ubuntu2.3)
Ubuntu 17.10 (Artful Aardvark):released (4.89-5ubuntu1.3)
Ubuntu 18.04 LTS (Bionic Beaver):released (4.90.1-1ubuntu1)
More Information

Updated: 2018-06-26 05:03:09 UTC (commit 7799c934cca373482531a7b00e4dfe82302ceae5)