CVE-2020-28020 PUBLISHED

Exim 4 before 4.92 allows Integer Overflow to Buffer Overflow, in which an unauthenticated remote attacker can execute arbitrary code by leveraging the mishandling of continuation lines during header-length restriction.

EPSS 19.80% · 95.4th percentile

Risk Scores

EPSS Score
19.80%
95.4th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSexim40, 4.80-7ubuntu3, 4.80-7ubuntu4
Ubuntu:18.04:LTSexim44.90.1-1ubuntu1.5, 0, 4.89-5ubuntu1
Ubuntu:Pro:16.04:LTSexim44.86.2-2ubuntu2.6, 0, 4.86-3ubuntu1

Timeline

References

Open in Interactive Console →