CVE Vulnerabilities

CVE-2005-0022

Published: May 02, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Buffer overflow in the spa_base64_to_bits function in Exim before 4.43, as originally obtained from Samba code, and as called by the auth_spa_client function, may allow attackers to execute arbitrary code during SPA authentication.

Affected Software

NameVendorStart VersionEnd Version
EximUniversity_of_cambridge*4.40 (including)
EximUniversity_of_cambridge4.41 (including)4.41 (including)
EximUniversity_of_cambridge4.42 (including)4.42 (including)
Red Hat Enterprise Linux 4RedHatexim-0:4.43-1.RHEL4.3*
Exim4Ubuntudapper*
Exim4Ubuntudevel*
Exim4Ubuntuedgy*
Exim4Ubuntufeisty*

References