Exim CVE-2019-10149 Remote Command Execution Vulnerability
BID:108679
CVE-2019-10149 |Info
Exim CVE-2019-10149 Remote Command Execution Vulnerability
| Bugtraq ID: | 108679 |
| Class: | Input Validation Error |
| CVE: |
CVE-2019-10149 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 04 2019 12:00AM |
| Updated: | Jun 04 2019 12:00AM |
| Credit: | Qualys Research Labs |
| Vulnerable: |
Exim Exim 4.91 Exim Exim 4.90 Exim Exim 4.89 Exim Exim 4.88 Exim Exim 4.87 |
| Not Vulnerable: |
Exim Exim 4.92 |
Discussion
Exim CVE-2019-10149 Remote Command Execution Vulnerability
Exim is prone to a remote command-execution vulnerability.
Successfully exploiting this issue may allow an attacker to execute arbitrary commands as root.
Exim versions 4.87 through 4.91 are vulnerable; other versions may also be affected.
Exim is prone to a remote command-execution vulnerability.
Successfully exploiting this issue may allow an attacker to execute arbitrary commands as root.
Exim versions 4.87 through 4.91 are vulnerable; other versions may also be affected.
Exploit / POC
Exim CVE-2019-10149 Remote Command Execution Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Exim CVE-2019-10149 Remote Command Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Exim CVE-2019-10149 Remote Command Execution Vulnerability
References:
References:
- Exim Homepage (Exim)
- Bug 1715237 (CVE-2019-10149) - CVE-2019-10149 exim: Remote command execution in (Redhat)
- CVE-2019-10149 (Redhat)
- CVE-2019-10149 Exim 4.87 to 4.91 (Exim)