Oval Definition:oval:org.mitre.oval:def:23061
Revision Date:2014-05-26Version:13
Title:ELSA-2010:0970: exim security update (Critical)
Description:Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session that includes two MAIL commands in conjunction with a large message containing crafted headers, leading to improper rejection logging.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2010-4344
ELSA-2010:0970-01
Platform(s):Oracle Linux 5
Product(s):exim
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • exim-mon is earlier than 0:4.63-5.el5_5.2
  • OR exim is earlier than 0:4.63-5.el5_5.2
  • OR exim-sa is earlier than 0:4.63-5.el5_5.2
  • BACK