CVE-2020-28025
06.05.2021, 13:15
Exim 4 before 4.94.2 allows Out-of-bounds Read because pdkim_finish_bodyhash does not validate the relationship between sig->bodyhash.len and b->bh.len; thus, a crafted DKIM-Signature header might lead to a leak of sensitive information from process memory.Enginsight
| Vendor | Product | Version |
|---|---|---|
| exim | exim | 4.00 ≤ 𝑥 < 4.94.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| exim4 |
|
Common Weakness Enumeration