Login
Newsletter
Werbung

Sicherheit: Mehrere Probleme in exim4
Aktuelle Meldungen Distributionen
Name: Mehrere Probleme in exim4
ID: DSA-4912-1
Distribution: Debian
Plattformen: Debian buster
Datum: Mi, 5. Mai 2021, 00:16
Referenzen: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28015
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28009
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28023
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28022
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28019
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28007
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28021
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28024
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28012
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28017
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28008
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28025
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28026
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28013
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28010
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28014
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28011
Applikationen: exim

Originalnachricht

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-4912-1 security@debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
May 04, 2021 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : exim4
CVE ID : CVE-2020-28007 CVE-2020-28008 CVE-2020-28009 CVE-2020-28010
CVE-2020-28011 CVE-2020-28012 CVE-2020-28013 CVE-2020-28014
CVE-2020-28015 CVE-2020-28017 CVE-2020-28019 CVE-2020-28021
CVE-2020-28022 CVE-2020-28023 CVE-2020-28024 CVE-2020-28025
CVE-2020-28026

The Qualys Research Labs reported several vulnerabilities in Exim, a
mail transport agent, which could result in local privilege escalation
and remote code execution.

Details can be found in the Qualys advisory at
https://www.qualys.com/2021/05/04/21nails/21nails.txt

For the stable distribution (buster), these problems have been fixed in
version 4.92-8+deb10u6.

We recommend that you upgrade your exim4 packages.

For the detailed security status of exim4 please refer to its security
tracker page at:
https://security-tracker.debian.org/tracker/exim4

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org
-----BEGIN PGP SIGNATURE-----

iQKTBAEBCgB9FiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmCRUaJfFIAAAAAALgAo
aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2
NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQACgkQBUy48xND
z0QLyg//fYw8UFUI3iGtSQI/G+did65XT3t4tib3Ddc9LcrqzZMQiNMpVMbcNMLB
uCtOl/pmVKS0W9BeNIPLfOwlpwxOtCZgZsmgfm5+IaMkLSkghZUMxSWNezgMaVGE
UZLp0/4Ha9Ehm8dL3TfArE3QsB3dJwAFDRknXLGw+BgilL7wWVyw8QOniqblh3zH
VYipYM/524IvLHcoxV2jU9StVr0AEE3xObMF1JwXZojtY60ZxeAwH/vW4c+cze7q
Q2TyMddFLGyotQFBrWrq1P96TvaH0oDfvoFZpxTPtNvWEiZtKvYkSk4LBUnAu9La
VMa2JUTCQe7+5gducLCftpKsPqTWYvEqDDK6M1Fo43CcAlFxzcELfmfGdmQ6o2Te
8wmYBNRjscNultb65gPa0bjNt5TCckUmZcgA9jHWp4S0RBAjEVl3aWlOBwHCWRaa
OJKWPCTuCCf7jk8zOY/BTaSBqf6CYI9O+TRWZNlec5L8JVfLpZnztPdJAIozp0UW
WggfA+LwRDdeagakS89K6DkM4KOC8wGcrIZJeC5Gp9RmA67KTOoXenN1slqbUALa
vHqldlcvs+m0vuKLdA4FEUtCrVD8n9ZoATcp5csVyzwwcEfRaP8Sjed/T/5LC9go
B9SZdzV2f0B8aOjeqOQQieqtT3qfEO85Q2l4z/7welUOOe8ug4o=
=ZIbN
-----END PGP SIGNATURE-----
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung