CVE-2020-28013 log

Source
Severity Medium
Remote No
Type Privilege escalation
Description
Exim 4 before 4.94.2 allows heap-based buffer overflow because it mishandles "-F '.('" on the command line, and thus may allow privilege escalation from any user to root. This occurs because of the interpretation of negative sizes in strncpy.
Group Package Affected Fixed Severity Status Ticket
AVG-1911 exim 4.94-3 4.94.2-1 High Fixed
References
https://www.openwall.com/lists/oss-security/2021/05/04/6
https://www.qualys.com/2021/05/04/21nails/21nails.txt
https://git.exim.org/exim.git/commitdiff/71585e8fcb8704a9f431f5a8d019280cccaad069