CVE-2020-28019
Exim 4 before 4.94.2 has Improper Initialization that can lead to recursion-based stack consumption or other consequences. This occurs because use of certain getc functions is mishandled when a client uses BDAT instead of DATA.
- Exim
- < 4.94.2
- Fix
- Available
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 61.7% (99th percentile)
- Weakness
- CWE-665
- NVD status
- Modified
- Published
- 2021-05-06
CVE-2020-28019 at NVD
1 known exploit for CVE-2020-28019
Proof-of-concept code and exploit modules indexed by Sploitus