[exim-dev] CVE-2021-38371 (allows response injection during …

Page principale
Supprimer ce message
Répondre à ce message
Auteur: Harry Mills
Date:  
À: exim-dev
Sujet: [exim-dev] CVE-2021-38371 (allows response injection during MTA SMTP sending)
Hi,

We have a PCI DSS compliance failure for CVE-2021-38371, the details
page (linked from mitre.org site) gives a 404 and we cannot find any
other details on what this CVE refers to, or whether or not a fix is
available.

We are running exim 4.94.2-2 from EPEL on Centos8.

Any information would be very welcome.

Best wishes,

Harry