FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2025-03-23 09:27:53 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
07c34df5-f299-11ef-a441-b42e991fc52eexim -- SQL injection

cve@mitre.org reports:

Exim 4.98 before 4.98.1, when SQLite hints and ETRN serialization are used, allows remote SQL injection.


Discovery 2025-02-21
Entry 2025-02-24
exim
< 4.98.1

CVE-2025-26794
https://nvd.nist.gov/vuln/detail/CVE-2025-26794
e917caba-e291-11e9-89f1-152fed202bb7Exim -- heap-based buffer overflow in string_vformat leading to RCE

Exim developers team report:

There is a heap overflow in string_vformat().Using a EHLO message, remote code execution seems to be possible.


Discovery 2019-09-28
Entry 2019-09-29
exim
>= 4.92 lt 4.92.3

https://www.openwall.com/lists/oss-security/2019/09/28/1