CVE-2019-16928
Known Exploited (CISA KEV)CRITICAL
9.8
CVSS Severity Score
Vulnerability Description
Exim 4.92 through 4.92.2 allows remote code execution, a different vulnerability than CVE-2019-15846. There is a heap-based buffer overflow in string_vformat in string.c involving a long EHLO command.
Affected Platforms (CPE)
π¦
Exim
Exim
>= 4.92 and <= 4.92.2π»
Canonical
Ubuntu Linux
= 19.04π»
Debian
Debian Linux
= 10.0π»
Fedoraproject
Fedora
= 29π»
Fedoraproject
Fedora
= 30π»
Fedoraproject
