[CLSA-2022:1661173443] Fix CVE(s): CVE-2022-37452, CVE-2022-37451
Type:
security
Severity:
Critical
Release date:
2022-08-22 13:04:03 UTC
Description:
* SECURITY UPDATE: exim heap overflow in host_name_lookup() - debian/patches/CVE-2022-37452.patch: fix host_name_lookup - CVE-2022-37452 * SECURITY UPDATE: invalid free in pam_converse in auths/call_pam.c - debian/patches/CVE-2022-37451.patch: fix PAM auth - CVE-2022-37451
Updated packages:
  • exim4_4.86.2-2ubuntu2.6+tuxcare.els2_all.deb
    sha:573f0c5f965a48b74e6b6b3ad29e5dc69ac6ff0b
  • exim4-base_4.86.2-2ubuntu2.6+tuxcare.els2_amd64.deb
    sha:77fb07b63247d6d14e4b1eba2254c36f18344422
  • exim4-config_4.86.2-2ubuntu2.6+tuxcare.els2_all.deb
    sha:aea28b7cd6bc8d59fc04d3c47ea2f1bc4d1761f0
  • exim4-daemon-heavy_4.86.2-2ubuntu2.6+tuxcare.els2_amd64.deb
    sha:a99a8047cf208d03e499703898d976746453b9dc
  • exim4-daemon-light_4.86.2-2ubuntu2.6+tuxcare.els2_amd64.deb
    sha:c3d35a9fea47f160f5113488e667c835e741451d
  • exim4-dev_4.86.2-2ubuntu2.6+tuxcare.els2_amd64.deb
    sha:fbc17040059153dc2b808872657abf838e7b231d
  • eximon4_4.86.2-2ubuntu2.6+tuxcare.els2_amd64.deb
    sha:64c95dcbe8dba148966f83055788cdbcbd0ae9cd
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.