EximÔ¶³Ì¶ÑÒç³öÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2019-10-01Îó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-16928£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
Ó°Ïì°æ±¾
ÊÜÓ°ÏìµÄ°æ±¾
Exim 4.92¡¢Exim 4.92.1¡¢Exim4.92.2
Îó²î¸ÅÊö
EximÊÇÒ»¸öÔËÐÐÓÚUnixϵͳÖеĿªÔ´ÐÂÎÅ´«ËÍÊðÀí£¨MTA£©£¬£¬£¬ËüÖ÷ÒªÈÏÕæÓʼþµÄ·ÓÉ¡¢×ª·¢ºÍͶµÝ¡£¡£¡£¡£
EximÔ´´úÂëstring.cÎļþÖеÄstring_vformatº¯Êý±£´æÒ»´¦¶ÑÒç³öÎó²î£¬£¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ýSMTPÐÒéÖеÄEHLO³¤×Ö·ûÀ´µ¼ÖÂEximµÄÒì³£´¥·¢¡£¡£¡£¡£
Îó²î´¥ÆðÔ´ÂëÈçÏÂËùʾ£º
Îó²îÑéÖ¤
POC: https://git.exim.org/exim.git/patch/478effbfd9c3cc5a627fc671d4bf94d13670d65f¡£¡£¡£¡£
ÐÞ¸´½¨Òé
ÏÖÔÚ³§ÉÌÒÑÐû²¼Exim 4.92.3ÒÔÐÞ¸´Îó²î£¬£¬£¬ÏêÇéÇë¹Ø×¢³§ÉÌÖ÷Ò³£ºhttps://exim.org¡£¡£¡£¡£
²Î¿¼Á´½Ó
https://git.exim.org/exim.git/patch/478effbfd9c3cc5a627fc671d4bf94d13670d65f