Get a Pentest and security assessment of your IT network.

News

Exim Off-by-one RCE: Exploiting CVE-2018-6789 with Fully Mitigations Bypassing

An overflow vulnerability in the base64 decode function of Exim has been identified as CVE-2018-6789. This bug exists since the first commit of exim, hence ALL versions are affected. Patched version 4.90.1 is already released and we suggest to upgrade exim immediately. At least 400k servers are at risk due to the bug. The exploitation mechanism used to achieve pre-auth remote code execution is described in the following paragraphs. In order to leverage this one byte overflow, it is necessary to trick memory management mechanism.”]

Source: https://devco.re/blog/2018/03/06/exim-off-by-one-RCE-exploiting-CVE-2018-6789-en/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks