[CLSA-2024:1709562273] Fix CVE(s): CVE-2023-51766
Type:
security
Severity:
Moderate
Release date:
2024-03-04 14:24:37 UTC
Description:
* SECURITY UPDATE: SMTP smuggling because of . support - debian/patches/CVE-2023-51766.patch: reject "dot, LF" as ending data phase. Testcase for "smtp smuggling". - CVE-2023-51766
Updated packages:
  • exim4_4.86.2-2ubuntu2.6+tuxcare.els6_all.deb
    sha:cb450302401429c6eaf53d1db9f246f09d2d8f61
  • exim4-base_4.86.2-2ubuntu2.6+tuxcare.els6_amd64.deb
    sha:2a1e0f95c25c86ebd133116d948a9cad4aabc988
  • exim4-config_4.86.2-2ubuntu2.6+tuxcare.els6_all.deb
    sha:a1ff82a8eb5a99b12bdf1e5090705f095b51d2ad
  • exim4-daemon-heavy_4.86.2-2ubuntu2.6+tuxcare.els6_amd64.deb
    sha:f7d9db5c22e1ed1271c71070e29fb2ddcd8c04c8
  • exim4-daemon-light_4.86.2-2ubuntu2.6+tuxcare.els6_amd64.deb
    sha:92f97764e5ecb1b7cde15bfa22ef03a00243be68
  • exim4-dev_4.86.2-2ubuntu2.6+tuxcare.els6_amd64.deb
    sha:26d3d97f66ed6fe9117cdcb122be18cef1cc8589
  • eximon4_4.86.2-2ubuntu2.6+tuxcare.els6_amd64.deb
    sha:c766307f28f1e9c259b3a9279ead3416f2e84ad5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.