logo

Exim Mail vulnerability CVE-2026-45185: Find impacted assets

ID: 0f6208fc-7f9c-543f-bb51-dd5dccdb2c16

STIX ID: report--0f6208fc-7f9c-543f-bb51-dd5dccdb2c16

Feed Name: runZero Blog

Threat Score
90/100

Date Published: 2023-10-10

Date Updated: 2026-05-13

Author: HD Moore

...
...

Critical remote code execution vulnerability in Exim (CVE-2026-45185, Dead.Letter) affects Exim versions prior to 4.99.3 when configured with GnuTLS: a use-after-free in BDAT body parsing can be triggered by a TLS close_notify mid-body during SMTP CHUNKING, causing heap corruption and enabling unauthenticated remote code execution (CVSS 9.8). The advisory recommends upgrading to Exim 4.99.3 or later, provides detection queries for asset discovery, and references earlier Exim vulnerabilities disclosed in 2023.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.