EximÔ¶³Ì¶ÑÒç³öÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-10-01

Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-16928£¬£¬£¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾


Exim 4.92¡¢Exim 4.92.1¡¢Exim4.92.2


Îó²î¸ÅÊö


EximÊÇÒ»¸öÔËÐÐÓÚUnixϵͳÖеĿªÔ´ÐÂÎÅ´«ËÍÊðÀí£¨MTA£©£¬£¬£¬£¬£¬£¬£¬£¬ËüÖ÷ÒªÈÏÕæÓʼþµÄ·ÓÉ¡¢×ª·¢ºÍͶµÝ¡£¡£¡£¡£¡£¡£¡£


EximÔ´´úÂëstring.cÎļþÖеÄstring_vformatº¯Êý±£´æÒ»´¦¶ÑÒç³öÎó²î£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ýSMTPЭÒéÖеÄEHLO³¤×Ö·ûÀ´µ¼ÖÂEximµÄÒì³£´¥·¢¡£¡£¡£¡£¡£¡£¡£


Îó²î´¥ÆðÔ´ÂëÈçÏÂËùʾ£º


ÍòÀû¹ú¼Ê¹ÙÍø(ÖйúÓÎ)ÓÐÏÞ¹«Ë¾



Îó²îÑéÖ¤


POC: https://git.exim.org/exim.git/patch/478effbfd9c3cc5a627fc671d4bf94d13670d65f¡£¡£¡£¡£¡£¡£¡£


ÐÞ¸´½¨Òé


ÏÖÔÚ³§ÉÌÒÑÐû²¼Exim 4.92.3ÒÔÐÞ¸´Îó²î£¬£¬£¬£¬£¬£¬£¬£¬ÏêÇéÇë¹Ø×¢³§ÉÌÖ÷Ò³£ºhttps://exim.org¡£¡£¡£¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://git.exim.org/exim.git/patch/478effbfd9c3cc5a627fc671d4bf94d13670d65f