[CLSA-2024:1709563071] Fix CVE(s): CVE-2023-51766
Type:
security
Severity:
Moderate
Release date:
2024-03-04 14:37:54 UTC
Description:
* SECURITY UPDATE: SMTP smuggling because of . support - debian/patches/CVE-2023-51766.patch: reject "dot, LF" as ending data phase. Testcase for "smtp smuggling". - CVE-2023-51766
Updated packages:
  • exim4_4.90.1-1ubuntu1.10+tuxcare.els5_all.deb
    sha:babca38b31d4b5f0a36417a28d61bda6e843e7b6
  • exim4-base_4.90.1-1ubuntu1.10+tuxcare.els5_amd64.deb
    sha:292a4b9add159b07097c49a7314ff9d108ce0bea
  • exim4-config_4.90.1-1ubuntu1.10+tuxcare.els5_all.deb
    sha:55aca0c5420b955b96c7d040f1cc7e817f65564b
  • exim4-daemon-heavy_4.90.1-1ubuntu1.10+tuxcare.els5_amd64.deb
    sha:8e29e36512659ad77224bfb933dfe32350b0d4a1
  • exim4-daemon-light_4.90.1-1ubuntu1.10+tuxcare.els5_amd64.deb
    sha:1d3ab808904af4d79635ccea7db4d234dfb6d456
  • exim4-dev_4.90.1-1ubuntu1.10+tuxcare.els5_amd64.deb
    sha:e888b64daea45391a162f190eca6fb7e80c61eaf
  • eximon4_4.90.1-1ubuntu1.10+tuxcare.els5_amd64.deb
    sha:876bc7e06f24de2b7172cd18978260ee95b8ff3a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.