[CLSA-2022:1660761670] Fixed CVEs in exim: CVE-2022-37451, CVE-2022-37452
Type:
security
Severity:
Critical
Release date:
2022-08-17
Description:
- CVE-2022-37452: fix heap-based buffer overflow for the alias list in host_name_lookup() - CVE-2022-37451: fix invalid free in pam_converse()
Updated packages:
  • exim-mysql-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:e01b2af2bf1cc1cf80d702738d86719d04795556
  • exim-greylist-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:0fd564c8327b1d633e7f7b59a4da3f5746f51786
  • exim-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:50df8f4911707dc32c573c8d12aeac88187ecbc5
  • exim-pgsql-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:ef7a571125d596d29f12448ffa5dc1b54256cb07
  • exim-mon-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:00c54aad90e26a7268ee78c35726769fac20e1c1
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.