VDB
CVE-2011-1764
CVE-2011-1764
PUBLISHED
Une vulnérabilité dans Exim permet à une personne malintentionnée d'exécuter du code arbitraire à distance.
EPSS 4.72% · 89.6th percentile
Risk Scores
EPSS Score
4.72%
89.6th percentile
Exploit Intelligence
- 51155 (circl)
- SUSE-SR:2011:009 (circl)
- DSA-2232 (circl)
- http://git.exim.org/exim.git/commit/337e3505b0e6cd4309db6bf6062b33fa56e06cf8 (circl)
- https://bugzilla.redhat.com/show_bug.cgi?id=702474 (circl)
- http://bugs.exim.org/show_bug.cgi?id=1106 (circl)
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=624670 (circl)
- Checks for a format string vulnerability in the Exim SMTP server (version 4.70 through 4.75) with DomainKeys Identified Mail (DKIM) support (CVE-2011-1764). The DKIM logging mechanism did not use format string specifiers when logging some parts of the DKIM-Signature header field. A remote attacker who is able to send emails, can exploit this vulnerability and execute arbitrary code with the privileges of the Exim daemon. Reference: * http://bugs.exim.org/show_bug.cgi?id=1106 * http://thread.g... (nmap-nse)
- Checks for a format string vulnerability in the Exim SMTP server (version 4.70 through 4.75) with DomainKeys Identified Mail (DKIM) support (CVE-2011-1764). The DKIM logging mechanism did not use format string specifiers when logging some parts of the DKIM-Signature header field. A remote attacker who is able to send emails, can exploit this vulnerability and execute arbitrary code with the privileges of the Exim daemon. Reference: * http://bugs.exim.org/show_bug.cgi?id=1106 * http://thread.g... (nmap-nse)
- Checks for a format string vulnerability in the Exim SMTP server (version 4.70 through 4.75) with DomainKeys Identified Mail (DKIM) support (CVE-2011-1764). The DKIM logging mechanism did not use format string specifiers when logging some parts of the DKIM-Signature header field. A remote attacker who is able to send emails, can exploit this vulnerability and execute arbitrary code with the privileges of the Exim daemon. Reference: * http://bugs.exim.org/show_bug.cgi?id=1106 * http://thread.g... (nmap-nse)
…and 21 more exploits
Timeline
- May 6, 2011 CVE Published
- Jul 18, 2011 PoC Published
- May 12, 2012 PoC Published
- Feb 26, 2019 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 4, 2023 EPSS Score