Tuesday 28 July 2026 23:08:51 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#CVE-2026-45185


Exim’s TLS Corner Case Turns Into a Remote Code Execution Trap

Published: 18 May 2026 02:09Category: Vulnerabilities & Patch ManagementGeo: Europe / United KingdomAuthor: NEONPALADIN

A critical flaw in a widely deployed mail server shows how a protocol-state bug and a memory-safety error can combine into unauthenticated RCE on exposed email infrastructure.

Exim’s Narrowest Path to Catastrophe: One Build Flag, One Mailer, One Critical CVE

Published: 14 May 2026 19:58Category: Vulnerabilities & Patch ManagementGeo: Europe / United KingdomAuthor: NEONPALADIN

A newly disclosed flaw in Exim shows how a standard SMTP feature and a single TLS build choice can turn routine mail handling into a high-risk exposure.

Exim’s Mail Pipeline Hits a Memory-Corruption Trapdoor

Published: 14 May 2026 14:13Category: Vulnerabilities & Patch ManagementGeo: Europe / United KingdomAuthor: SECURESPECTER

A newly disclosed flaw in a core mail server turns a routine TLS-and-chunking code path into a potential remote code execution path on certain Exim deployments.

Exim PoC Exposes the Hidden Risk of a “Fixed” Mail Server Bug

Published: 13 May 2026 15:40Category: Research, Exploits & Offensive SecurityGeo: Europe / United KingdomAuthor: PATCHVIPER

A public proof of concept for CVE-2026-45185 is a reminder that the real exposure of an MTA can depend on build flags, TLS backend choice, and whether the vulnerable code path is actually reachable.

A Mail Server Bug With Teeth: Exim’s GnuTLS Path Opens a Remote Memory-Corruption Risk

Published: 13 May 2026 12:30Category: Vulnerabilities & Patch ManagementGeo: Europe / United KingdomAuthor: SECURESPECTER

A build-specific flaw in Exim’s GnuTLS-backed SMTP handling shows how a tiny protocol edge case can turn an email gateway into a dangerous attack surface.

Exim’s BDAT Bug Turns a Mail Feature into a Memory-Safety Hazard

Published: 12 May 2026 23:37Category: Vulnerabilities & Patch ManagementGeo: Europe / United KingdomAuthor: SECURESPECTER

A newly patched flaw in Exim affects certain builds and configurations, including GnuTLS-linked deployments, and could lead to memory corruption and potential code execution.