Oval Definition:oval:com.ubuntu.precise:def:20125671000
Revision Date:2012-10-31Version:1
Title:CVE-2012-5671 on Ubuntu 12.04 LTS (precise) - high.
Description:Heap-based buffer overflow in the dkim_exim_query_dns_txt function in dkim.c in Exim 4.70 through 4.80, when DKIM support is enabled and acl_smtp_connect and acl_smtp_rcpt are not set to "warn control = dkim_disable_verify," allows remote attackers to execute arbitrary code via an email from a malicious DNS server.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-5671
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND The 'exim4' package in precise was vulnerable but has been fixed (note: '4.76-3ubuntu3.1').
  • BACK