Oval Definition:oval:org.opensuse.security:def:20104344
Revision Date:2022-06-30Version:1
Title:CVE-2010-4344
Description:

Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session that includes two MAIL commands in conjunction with a large message containing crafted headers, leading to improper rejection logging.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2010-4344
Mitre CVE-2010-4344
SUSE CVE-2010-4344
openSUSE-SU-2010:1052-1
SUSE-SA:2010:059
Platform(s):openSUSE 11.1
openSUSE 11.2
openSUSE 11.3
openSUSE 13.2
openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • openSUSE 13.2 is installed
  • AND exim-4.83-3.1.8 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • exim-4.86.2-2.2 is installed
  • OR eximon-4.86.2-2.2 is installed
  • OR eximstats-html-4.86.2-2.2 is installed
  • BACK