Vulnerability Manager Plus
Free Trial
  • Overview
  • Features
  • Demo
  • Documents
  • Get Quote
  • Support
Home
 

Exim is a mail transport agent (USN-2933-1) exim4-daemon-light_4.86-3ubuntu1.1_amd64.deb

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
7.0
MODERATE
Vector
I:C/AV:L/Au:N/AC:L/A:C/C:C
EPSS Score
Exploitation Probability
0.213%

CVE Information

Source CVE
CVE-2014-2972

Associated CVE
CVE-2014-2972
CVE-2016-1531

Patch Details

No records found

References

http://git.exim.org/exim.git/commitdiff/7685ce68148a083d7759e78d01aa5198fc099c44
http://lists.fedoraproject.org/pipermail/package-announce/2014-August/136251.html
http://lists.fedoraproject.org/pipermail/package-announce/2014-August/136264.html
http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00026.html
http://packetstormsecurity.com/files/136124/Exim-4.84-3-Local-Root-Privilege-Escalation.html
http://www.debian.org/security/2016/dsa-3517
http://www.exim.org/static/doc/CVE-2016-1531.txt
http://www.rapid7.com/db/modules/exploit/unix/local/exim_perl_startup
http://www.securitytracker.com/id/1035512
http://www.ubuntu.com/usn/USN-2933-1
https://bugzilla.redhat.com/show_bug.cgi?id=1122552
https://lists.exim.org/lurker/message/20140722.145949.42c043f5.en.html
https://lists.exim.org/lurker/message/20140722.152452.d6c019e8.en.html
https://security.gentoo.org/glsa/201607-12
https://www.exploit-db.com/exploits/39535/
https://www.exploit-db.com/exploits/39549/
https://www.exploit-db.com/exploits/39702/

Details

CWE ID
CWE-138
CWE Type
Gain privileges
Vulnerability ID
27754
Published
2014-09-04
Updated
2026-02-27

Vulnerability Intelligence

Evaluate vulnerabilities across managed endpoints with enriched threat intelligence and risk context such as:

Risk Score
Emerging Risk Catalog
CERT Advisories
Risk Indicators