PatchSiren

Exim CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Exim CVE published 2026-09-19

CVE-2026-94057

SMTP smuggling vulnerability in Exim before 4.100.1 allows crafted data to cause mismatch between received and sent messages. This issue arises from the improper handling of data sent after a rejection during DATA processing, potentially leading to message mismatch and security risks. Defenders and administrators should assess the impact and take necessary actions to secure Exim installations. The vulnera [truncated]

HIGH Exim CVE published 2026-09-19

CVE-2026-94056

CVE-2026-94056 is a high-severity vulnerability in Exim before version 4.100.1. When using Proxy-Protocol with an attacker-controlled proxy, it allows attackers to read certain uninitialized data from stack memory. This issue is particularly concerning for organizations using Exim as their mail transfer agent, as it could potentially lead to information disclosure.

LOW Exim CVE published 2026-09-19

CVE-2026-94055

A use-after-free vulnerability exists in Exim before version 4.100.1 when certain non-default TLS settings are used with GnuTLS. This CVE was published on 2026-09-19T23:17:10.973Z and has not been modified since then. The vulnerability can lead to potential denial of service due to the use-after-free condition. Defenders should assess exposure and prioritize updates to version 4.100.1 or later. The CVE re [truncated]

HIGH Exim CVE published 2026-09-19

CVE-2026-94054

A high-severity vulnerability exists in Exim before version 4.100.1 when using Proxy-Protocol with an attacker-controlled proxy, leading to an out-of-bounds write. This CVE was published on 2026-09-19T23:17:10.827Z and has not been modified since then. The NVD entry is currently Received. Defenders responsible for Exim servers, especially those using Proxy-Protocol, should assess exposure and verify confi [truncated]

HIGH Exim CVE published 2026-07-24

CVE-2026-66141

Exim before 4.99.5 is vulnerable to a privilege escalation issue due to mishandling of force_command for a pipe transport in the .forward configuration. This could allow an attacker to escalate privileges on affected systems. Exim users and administrators should be aware of this vulnerability and take steps to mitigate it by verifying their Exim versions and reviewing .forward configurations for potential [truncated]

HIGH Exim CVE published 2026-07-24

CVE-2026-66140

CVE-2026-66140 is a directory traversal vulnerability in Exim before version 4.99.5. The vulnerability allows attackers to access files outside of the spool area, potentially leading to privilege escalation. The CVSS score for this vulnerability is 8.4, indicating a high severity. Affected product deployments should be confirmed in managed environments, and owners should be assigned for follow-up. Officia [truncated]

Known exploited Exim CVE published 2022-03-25

CVE-2010-4345

CVE-2010-4345 is an Exim privilege escalation vulnerability that CISA has listed in its Known Exploited Vulnerabilities catalog. The KEV entry indicates this issue is considered actively exploited or of confirmed exploitation concern, so Exim deployments should be treated as urgent patch candidates. CISA’s guidance is to apply updates per vendor instructions.

Known exploited Exim CVE published 2022-03-25

CVE-2010-4344

CVE-2010-4344 is identified by CISA as an Exim heap-based buffer overflow vulnerability and is included in the Known Exploited Vulnerabilities catalog. The supplied CISA entry was published on 2022-03-25 and sets a remediation due date of 2022-04-15, with the required action to apply updates per vendor instructions. Because this vulnerability is listed as known exploited, defenders should treat remediatio [truncated]

Known exploited Exim CVE published 2022-03-03

CVE-2019-16928

CVE-2019-16928 is an out-of-bounds write vulnerability in Exim Internet Mailer. CISA included it in the Known Exploited Vulnerabilities catalog on 2022-03-03 and set a remediation due date of 2022-03-17, which makes this a high-priority patching item for any environment running Exim.

Known exploited Exim CVE published 2022-01-10

CVE-2019-10149

CVE-2019-10149 is a security issue in Exim Mail Transfer Agent (MTA) described as improper input validation. CISA has included it in the Known Exploited Vulnerabilities catalog, which means it should be treated as a priority issue for defenders, especially on systems exposed to untrusted network traffic. The available source corpus does not provide deeper technical detail, so the safest response is to ver [truncated]

Known exploited Exim CVE published 2021-11-03

CVE-2018-6789

CVE-2018-6789 is an Exim buffer overflow vulnerability that CISA has placed in its Known Exploited Vulnerabilities catalog. The KEV entry indicates known exploitation and also marks the issue as having known ransomware campaign use, which makes it a high-priority item for defenders even without additional product details in the source corpus.