[CLSA-2022:1660759272] Fixed CVEs in exim: CVE-2022-37451, CVE-2022-37452
Type:
security
Severity:
Critical
Release date:
2022-08-17
Description:
- CVE-2022-37452: fix heap-based buffer overflow for the alias list in host_name_lookup() - CVE-2022-37451: fix invalid free in pam_converse()
Updated packages:
  • exim-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:956a47c7704e273434927b52372b00e3bffb0346
  • exim-mysql-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:4e82763d24e8fc2396cd7218ab4ba0860c4e5151
  • exim-greylist-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:206bc48a6c7910c49dfded913f483018cd033fd4
  • exim-mon-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:00e839fc19404761f345caab39d30cf6de3e9fc1
  • exim-pgsql-4.92.3-3.el6.tuxcare.els2.x86_64.rpm
    sha:1fd326bd1492b36c292b95759123ee20b12fcdb4
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.