[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250039

 
 

909

 
 

195882

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

exim: ${sort} in configuration leads to privilege escalation (CVE-2019-13917)

ID: oval:org.secpod.oval:def:59747Date: (C)2019-11-20   (M)2023-12-20
Class: PATCHFamily: unix




A flaw was found in exim, in which if the server configuration uses the ${sort } expansion, then this could be controlled by the remote attacker , resulting in the attacker able to execute programs with root privileges. Note: The default config, as shipped by exim upstream, does not contain ${sort }.

Platform:
Alpine Linux 3.10
Alpine Linux 3.9
Product:
exim
Reference:
10694
CVE-2019-13917
CVE    1
CVE-2019-13917

© SecPod Technologies