Integer underflow in Exim - CVE-2023-42118

 

Integer underflow in Exim - CVE-2023-42118

Published: September 28, 2023 / Updated: October 1, 2023


Vulnerability identifier: #VU81255
CSH Severity: Critical
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-42118
CWE-ID: CWE-191
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to integer underflow in libspf2 when parsing SPF macros. A remote attacker can pass specially crafted data to the server, trigger an integer underflow and execute arbitrary code on the target system.



Affected software

Exim
Fedora
openEuler
libspf2-apidocs
perl-Mail-SPF_XS
libspf2
libspf2-debuginfo
libspf2-debugsource
libspf2-devel
libspf2-progs

How to mitigate CVE-2023-42118

Install update from vendor's website.

Exim - addressed in versions 4.96.1, 4.97
libspf2-apidocs - update to 1.2.11-2
perl-Mail-SPF_XS - update to 1.2.11-2
libspf2 - update to 1.2.11-2
libspf2-debuginfo - update to 1.2.11-2
libspf2-debugsource - update to 1.2.11-2
libspf2-devel - update to 1.2.11-2
libspf2-progs - update to 1.2.11-2
libspf2 - addressed in versions 1.2.11-10.20210922git4915c308.el7, 1.2.11-10.20210922git4915c308.el8, 1.2.11-10.20210922git4915c308.el9, 1.2.11-10.20210922git4915c308.fc37, 1.2.11-10.20210922git4915c308.fc38, 1.2.11-10.20210922git4915c308.fc39

External References

Related Security Bulletins