RULE(RULE ID:505600)

Rule General Information
Release Date: 2019-09-06
Rule Name: EXIM RCE Inbound Vulnerability (CVE-2019-15846)
Severity:
CVE ID:
Rule Protection Details
Description: Exim before 4.92.2 allows remote attackers to execute arbitrary code as root via a trailing backslash.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Others
Reference: http://exim.org/static/doc/security/CVE-2019-15846.txt
http://www.openwall.com/lists/oss-security/2019/09/06/2
http://www.openwall.com/lists/oss-security/2019/09/06/4
http://www.openwall.com/lists/oss-security/2019/09/06/5
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://exim.org/static/doc/security/CVE-2019-15846.txt