[CLSA-2023:1700160963] Fix CVE(s): CVE-2023-42117, CVE-2023-42119
Type:
security
Severity:
Important
Release date:
2023-11-16 18:56:29 UTC
Description:
* SECURITY UPDATE: Remote code execution because of improper neutralization of special elements - debian/patches/CVE-2023-42117.patch: fix string_is_ip_address() - CVE-2023-42117 * SECURITY UPDATE: dnsdb out-of-bounds read information disclosure - debian/patches/CVE-2023-42119.patch: harden dnsdb against crafted DNS responses - CVE-2023-42119
Updated packages:
  • exim4_4.86.2-2ubuntu2.6+tuxcare.els5_all.deb
    sha:889955e863fc53be458ca1af328ed61a8aaf82ec
  • exim4-base_4.86.2-2ubuntu2.6+tuxcare.els5_amd64.deb
    sha:0e6c387b65d5f1f9d69cc4fa48cb9ea1f20203d0
  • exim4-config_4.86.2-2ubuntu2.6+tuxcare.els5_all.deb
    sha:a5c357ccb5e31fa2953450691f66ca70019f60e9
  • exim4-daemon-heavy_4.86.2-2ubuntu2.6+tuxcare.els5_amd64.deb
    sha:392e3c04f8b2adfd13a3bde0c6684045b86d2aca
  • exim4-daemon-light_4.86.2-2ubuntu2.6+tuxcare.els5_amd64.deb
    sha:7ef3146345701dbf6a9d7cb04689cffbd3e4952e
  • exim4-dev_4.86.2-2ubuntu2.6+tuxcare.els5_amd64.deb
    sha:d106afea814e8788d5926b089e307eadd98e93a3
  • eximon4_4.86.2-2ubuntu2.6+tuxcare.els5_amd64.deb
    sha:f007dd3fdf1b19dff0d6876b21a53848c51a46f9
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.