QID 198350

Date Published: 2021-05-05

QID 198350: Ubuntu Security Notification for Exim4 Vulnerabilities (USN-4934-1) (21Nails)

It was discovered that Exim contained multiple security issues.

An attacker could use these issues to cause a denial of service, execute arbitrary code remotely, obtain sensitive information, or escalate local privileges.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution
    Refer to Ubuntu advisory USN-4934-1 for affected packages and patching details, or update with your package manager.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    USN-4934-1 18.04 (bionic) on src exim4-base URL Logo launchpad.net/ubuntu/+source/exim4/4.90.1-1ubuntu1.8
    USN-4934-1 18.04 (bionic) on src exim4-daemon-heavy URL Logo launchpad.net/ubuntu/+source/exim4/4.90.1-1ubuntu1.8
    USN-4934-1 18.04 (bionic) on src exim4-daemon-light URL Logo launchpad.net/ubuntu/+source/exim4/4.90.1-1ubuntu1.8
    USN-4934-1 20.04 (focal) on src exim4-base URL Logo launchpad.net/ubuntu/+source/exim4/4.93-13ubuntu1.5
    USN-4934-1 20.04 (focal) on src exim4-daemon-heavy URL Logo launchpad.net/ubuntu/+source/exim4/4.93-13ubuntu1.5
    USN-4934-1 20.04 (focal) on src exim4-daemon-light URL Logo launchpad.net/ubuntu/+source/exim4/4.93-13ubuntu1.5
    USN-4934-1 20.10 (groovy) on src exim4-base URL Logo launchpad.net/ubuntu/+source/exim4/4.94-7ubuntu1.2
    USN-4934-1 20.10 (groovy) on src exim4-daemon-heavy URL Logo launchpad.net/ubuntu/+source/exim4/4.94-7ubuntu1.2
    USN-4934-1 20.10 (groovy) on src exim4-daemon-light URL Logo launchpad.net/ubuntu/+source/exim4/4.94-7ubuntu1.2
    USN-4934-1 21.04 (hirsute) on src exim4-base URL Logo launchpad.net/ubuntu/+source/exim4/4.94-15ubuntu1.2
    USN-4934-1 21.04 (hirsute) on src exim4-daemon-heavy URL Logo launchpad.net/ubuntu/+source/exim4/4.94-15ubuntu1.2
    USN-4934-1 21.04 (hirsute) on src exim4-daemon-light URL Logo launchpad.net/ubuntu/+source/exim4/4.94-15ubuntu1.2