[ubuntu/mantic-security] exim4 4.96-17ubuntu2.1 (Accepted)

Allen Huang allen.huang at canonical.com
Thu Oct 26 20:07:38 UTC 2023


exim4 (4.96-17ubuntu2.1) mantic-security; urgency=medium

  * SECURITY UPDATE: remote code execution
    - debian/patches/CVE-2023-42117.patch: fixed string_is_ip_address()
      in string.c
    - CVE-2023-42117
  * SECURITY UPDATE: information disclosure
    - debian/patches/CVE-2023-42119.patch: hardened dnsdb.c against
      crafted DNS responses.
    - CVE-2023-42119

Date: 2023-10-26 18:36:09.066131+00:00
Changed-By: Allen Huang <allen.huang at canonical.com>
https://launchpad.net/ubuntu/+source/exim4/4.96-17ubuntu2.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the mantic-changes mailing list