A flaw was found in Exim versions 4.87 to 4.91 (inclusive). Improper validation of recipient address in deliver_message() function in /src/deliver.c may lead to remote command execution.
History

Fri, 07 Feb 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2022-01-10'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 14 Aug 2024 00:30:00 +0000

Type Values Removed Values Added
References

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2025-02-07T13:31:16.261Z

Reserved: 2019-03-27T00:00:00.000Z

Link: CVE-2019-10149

cve-icon Vulnrichment

Updated: 2024-08-04T22:10:09.944Z

cve-icon NVD

Status : Modified

Published: 2019-06-05T14:29:11.293

Modified: 2024-11-21T04:18:31.237

Link: CVE-2019-10149

cve-icon Redhat

Severity : Critical

Publid Date: 2019-06-04T04:30:00Z

Links: CVE-2019-10149 - Bugzilla