CVE Vulnerabilities

CVE-2002-1381

Published: Dec 23, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Format string vulnerability in daemon.c for Exim 4.x through 4.10, and 3.x through 3.36, allows exim administrative users to execute arbitrary code by modifying the pid_file_path value.

Affected Software

NameVendorStart VersionEnd Version
EximUniversity_of_cambridge3.35 (including)3.35 (including)
EximUniversity_of_cambridge3.36 (including)3.36 (including)
EximUniversity_of_cambridge4.10 (including)4.10 (including)

References