CVE-2014-2972Improper Neutralization of Special Elements in Exim

Severity
4.6MEDIUMNVD
EPSS
0.2%
top 56.12%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 4
Latest updateMay 17

Description

expand.c in Exim before 4.83 expands mathematical comparisons twice, which allows local users to gain privileges and execute arbitrary commands via a crafted lookup value.

CVSS vector

AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4

Affected Packages2 packages

debiandebian/exim4< exim4 4.82.1-2 (bookworm)
NVDexim/exim4.82.1+51

Patches

🔴Vulnerability Details

3
GHSA
GHSA-9qqj-vrhc-8q74: expand2022-05-17
OSV
exim4 vulnerabilities2016-03-15
OSV
CVE-2014-2972: expand2014-09-04

📋Vendor Advisories

3
Ubuntu
Exim vulnerabilities2016-03-15
Red Hat
exim: local code execution via string expansion2014-07-23
Debian
CVE-2014-2972: exim4 - expand.c in Exim before 4.83 expands mathematical comparisons twice, which allow...2014

💬Community

3
Bugzilla
CVE-2014-2972 exim: local code execution via string expansion [fedora-all]2014-07-23
Bugzilla
CVE-2014-2972 exim: local code execution via string expansion [epel-6]2014-07-23
Bugzilla
CVE-2014-2972 exim: local code execution via string expansion2014-07-23