exim: out-of-bounds access in string_interpret_escape() leading to buffer overflow in the SMTP delivery process
Published Sep 6, 2019
9.8
CRITICALCVSS 3.0
EPSS 35.74%
Description
Exim before 4.92.2 allows remote attackers to execute arbitrary code as root via a trailing backslash.
Affected products
No data.
Configuration 2
- 8.0
- 9.0
- 10.0
No data.
Red Hat Enterprise Linux 5
exim
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | exim | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
The flaw in the string_interpret_escape() function exists in the versions of Exim as shipped with Red Hat Enterprise Linux 5. However, it is not exposed to untrusted inputs and therefore it can not be exploited to achieve remote code execution. Refer to Red Hat Bugzilla bug 1748397 for further technical details: https://bugzilla.redhat.com/show_bug.cgi?id=1748397#c6 Exim mail server is not shipped with Red Hat Enterprise Linux 6, 7, and 8.
References (28)
- http://exim.org/static/doc/security/CVE-2019-15846.txt x_refsource_MISCMitigationVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00024.html vendor-advisoryx_refsource_SUSE
- http://www.openwall.com/lists/oss-security/2019/09/06/2 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2019/09/06/4 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2019/09/06/5 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2019/09/06/6 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2019/09/06/8 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2019/09/07/1 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2019/09/07/2 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2019/09/08/1 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2019/09/09/1 mailing-listx_refsource_MLIST
- https://access.redhat.com/security/cve/CVE-2019-15846 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1748397 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-6762 Advisory
- https://exim.org/static/doc/security/CVE-2019-15846.txt x_refsource_MISC
- https://lists.debian.org/debian-lts-announce/2019/09/msg00004.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FT3GY7V7SR2RHKNZNQCGXFWUSILVSZNU/ vendor-advisoryx_refsource_FEDORA
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NDF37AUNETIOXY6ZLQAUBGBVUTMMV242/ vendor-advisoryx_refsource_FEDORA
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SBNHDAF74RI6VK2JVSEIE3VYNL7JJDYM/ vendor-advisoryx_refsource_FEDORA
- https://nvd.nist.gov/vuln/detail/CVE-2019-15846
- https://seclists.org/bugtraq/2019/Sep/13 mailing-listx_refsource_BUGTRAQMailing ListThird Party Advisory
- https://security.gentoo.org/glsa/201909-06 vendor-advisoryx_refsource_GENTOO
- https://usn.ubuntu.com/4124-1/ vendor-advisoryx_refsource_UBUNTU
- https://usn.ubuntu.com/4124-2/ vendor-advisoryx_refsource_UBUNTU
- https://www.cve.org/CVERecord?id=CVE-2019-15846
- https://www.debian.org/security/2019/dsa-4517 vendor-advisoryx_refsource_DEBIAN
- https://www.kb.cert.org/vuls/id/672565 third-party-advisoryx_refsource_CERT-VN
- https://www.openwall.com/lists/oss-security/2019/09/06/1 x_refsource_MISCMailing ListThird Party Advisory
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
GitHub
No data