• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
critical exim mail server vulnerability exposes millions to malicious attachments

Critical Exim Mail Server Vulnerability Exposes Millions to Malicious Attachments

You are here: Home / General Cyber Security News / Critical Exim Mail Server Vulnerability Exposes Millions to Malicious Attachments
July 12, 2024

A critical security issue has been disclosed in the Exim mail transfer agent that could empower menace actors to supply destructive attachments to goal users’ inboxes.

The vulnerability, tracked as CVE-2024-39929, has a CVSS rating of 9.1 out of 10.. It has been resolved in variation 4.98.

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


“Exim as a result of 4.97.1 misparses a multiline RFC 2231 header filename, and therefore distant attackers can bypass a $mime_filename extension-blocking safety mechanism, and probably produce executable attachments to the mailboxes of close people,” according to a description shared on the U.S. Nationwide Vulnerability Database (NVD).

Cybersecurity

Exim is a free of charge, mail transfer agent that’s used in hosts that are running Unix or Unix-like working systems. It was initial released in 1995 for use at the University of Cambridge.

Attack floor management firm Censys stated 4,830,719 of the 6,540,044 public-facing SMTP mail servers are managing Exim. As of July 12, 2024, 1,563,085 internet-accessible Exim servers are jogging a likely susceptible model (4.97.1 or earlier).

A bulk of the vulnerable cases are positioned in the U.S., Russia, and Canada.

Cybersecurity

“The vulnerability could allow a distant attacker to bypass filename extension blocking protection measures and provide executable attachments immediately to end-users’ mailboxes,” it pointed out. “If a person have been to obtain or run 1 of these malicious documents, the process could be compromised.”

This also implies that prospective targets need to click on on an attached executable for the attack to be productive. Though there are no stories of energetic exploitation of the flaw, it truly is crucial that end users move speedily to implement the patches to mitigate prospective threats.

The development arrives nearly a year soon after the project maintainers a established of six vulnerabilities in Exim that could end result in info disclosure and distant code execution.

Discovered this report attention-grabbing? Adhere to us on Twitter  and LinkedIn to study much more special material we submit.


Some sections of this write-up are sourced from:
thehackernews.com

Previous Post: «ever wonder how hackers really steal passwords? discover their tactics Ever Wonder How Hackers Really Steal Passwords? Discover Their Tactics in This Webinar
Next Post: Australian Defence Force Private and Husband Charged with Espionage for Russia australian defence force private and husband charged with espionage for»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.