OS Command Injection in Exim - CVE-2019-15846
Published: September 6, 2019
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary shell commands on the target system.
The vulnerability exists due to incorrect processing of trailing backslash during TLS connection. A remote unauthenticated attacker can send specially crafted command via an established TLS connection and execute arbitrary OS commands on the target system with root privileges.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Affected software
Arch Linux
Amazon Linux AMI
Gentoo Linux
Fedora
Opensuse
exim4 (Debian package)
exim (Alpine package)
exim4 (Ubuntu package)
exim
How to mitigate CVE-2019-15846
exim4 (Debian package) - addressed in versions 4.89-2+deb9u6, 4.92-8+deb10u2
exim (Alpine package) - update to 4.91-r2
exim4 (Ubuntu package) - addressed in versions 4.86.2-2ubuntu2.5, 4.90.1-1ubuntu1.4, 4.92-4ubuntu1.3
exim - addressed in versions 4.92.2-1.el6, 4.92.2-1.el7, 4.92.2-1.fc29, 4.92.2-1.fc30, 4.92.2-1.fc31
Links to Public Exploits and PoC-codes
External References
Related Security Bulletins
- Arch Linux update for exim
- Remote command execution in Exim
- Ubuntu update for Exim
- Debian update for exim4
- Gentoo update for Exim
- OpenSUSE Linux update for exim
- Amazon Linux AMI update for exim
- Amazon Linux AMI update for exim
- OS Command Injection in exim (Alpine package)
- Fedora 31 update for exim
- Fedora 30 update for exim
- Fedora 29 update for exim
- Fedora EPEL 6 update for exim
- Fedora EPEL 7 update for exim