CVE-2020-28014 log

Source
Severity Medium
Remote No
Type Arbitrary file overwrite
Description
Exim 4 before 4.94.2 allows execution with unnecessary privileges. The -oP option is available to the exim user, and allows a denial of service because root-owned files can be overwritten.
Group Package Affected Fixed Severity Status Ticket
AVG-1911 exim 4.94-3 4.94.2-1 High Fixed
References
https://www.openwall.com/lists/oss-security/2021/05/04/6
https://www.qualys.com/2021/05/04/21nails/21nails.txt
https://git.exim.org/exim.git/commitdiff/43c6f0b83200b7082353c50187ef75de3704580a