| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.69766 |
| Category: | FreeBSD Local Security Checks |
| Title: | FreeBSD Ports: exim |
| Summary: | FreeBSD Ports: exim |
| Description: | The remote host is missing an update to the system as announced in the referenced advisory. The following package is affected: exim CVE-2011-1407 The DKIM implementation in Exim 4.7x before 4.76 permits matching for DKIM identities to apply to lookup items, instead of only strings, which allows remote attackers to execute arbitrary code or access a filesystem via a crafted identity. Solution: Update your system with the appropriate patches or software upgrades. http://bugs.exim.org/show_bug.cgi?id=1106 https://lists.exim.org/lurker/message/20110512.102909.8136175a.en.html http://www.vuxml.org/freebsd/36594c54-7be7-11e0-9838-0022156e8794.html |
| Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2011-1764 Debian Security Information: DSA-2232 (Google Search) http://www.debian.org/security/2011/dsa-2232 Common Vulnerability Exposure (CVE) ID: CVE-2011-1407 https://lists.exim.org/lurker/message/20110509.091632.daed0206.en.html https://lists.exim.org/lurker/message/20110512.102909.8136175a.en.html Debian Security Information: DSA-2236 (Google Search) http://www.debian.org/security/2011/dsa-2236 http://www.ubuntu.com/usn/USN-1135-1 BugTraq ID: 47836 http://www.securityfocus.com/bid/47836 |
| Copyright | Copyright (c) 2011 E-Soft Inc. http://www.securityspace.com |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|