CVE-2020-28025
Exim 4 before 4.94.2 allows Out-of-bounds Read because pdkim_finish_bodyhash does not validate the relationship between
Exim 4 before 4.94.2 allows Out-of-bounds Read because pdkim_finish_bodyhash does not validate the relationship between sig-bodyhash.len and b-bh.len.
thus, a crafted DKIM-Signature header might lead to a leak of sensitive information from process memory.
HIGH · CVSS 7.5
EPSS 0.01407
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0