CVE-2012-5671
Publication date 26 October 2012
Last updated 24 July 2024
Ubuntu priority
Heap-based buffer overflow in the dkim_exim_query_dns_txt function in dkim.c in Exim 4.70 through 4.80, when DKIM support is enabled and acl_smtp_connect and acl_smtp_rcpt are not set to "warn control = dkim_disable_verify," allows remote attackers to execute arbitrary code via an email from a malicious DNS server.
References
Related Ubuntu Security Notices (USN)
- USN-1618-1
- Exim vulnerability
- 26 October 2012