[CLSA-2026:1787225012] exim: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2026-08-20 11:23:43 UTC
Description:
- CVE-2026-66140: restrict named-queue names and require admin for -MC* command-line options - CVE-2026-66141: do not expand local_part in a pipe transport under force_command
Updated packages:
  • exim-4.92.3-3.el6.tuxcare.els9.x86_64.rpm
    sha:bbfd6f7bd8c5c0b801bb871e170f979d6691f2fe8e009ee77d359fd084eb7abe
  • exim-greylist-4.92.3-3.el6.tuxcare.els9.x86_64.rpm
    sha:aba92b16d2d7e539b71736c7f309603ffa6129d6d6d4681850d03593a77e1558
  • exim-mon-4.92.3-3.el6.tuxcare.els9.x86_64.rpm
    sha:c72a9a875572692b9133d362000debdcd127d234a6fc66799c8db82217f34514
  • exim-mysql-4.92.3-3.el6.tuxcare.els9.x86_64.rpm
    sha:3cd268063327b3429862b9f10d54e5b30ef93332eb4a18691a4e2d7692e73c2b
  • exim-pgsql-4.92.3-3.el6.tuxcare.els9.x86_64.rpm
    sha:89d3e6a37aa3aba22d3ec12af58be640c2cbc3c62cecaac64b1b180660880b5f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.