Security Advisory

CVE-2014-2972

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-09-04 17:00:00
Last updated 2024-08-06 10:28:46
Assigner certcc
State PUBLISHED

Description

expand.c in Exim before 4.83 expands mathematical comparisons twice, which allows local users to gain privileges and execute arbitrary commands via a crafted lookup value.