In Exim before 4.99.2, when the SPA authentication driver is used with an adversarial SPA resource, there can be an out-of-bounds write that crashes the connection instance, or erroneous data processing that divulges data from uninitialized heap memory.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 30 Apr 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Exim before 4.99.2, when the SPA authentication driver is used with an adversarial SPA resource, there can be an out-of-bounds write that crashes the connection instance, or erroneous data processing that divulges data from uninitialized heap memory. | |
| First Time appeared |
Exim
Exim exim |
|
| Weaknesses | CWE-909 | |
| CPEs | cpe:2.3:a:exim:exim:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Exim
Exim exim |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-04-30T21:32:54.175Z
Reserved: 2026-04-14T00:00:00.000Z
Link: CVE-2026-40687
No data.
Status : Received
Published: 2026-04-30T22:16:25.923
Modified: 2026-04-30T22:16:25.923
Link: CVE-2026-40687
No data.
OpenCVE Enrichment
Updated: 2026-04-30T23:30:03Z
Weaknesses