Comment 1 for bug 1843041

Revision history for this message
Alex Murray (alexmurray) wrote :

This bug was fixed in the package exim4 - 4.92-4ubuntu1.3
----------------
exim4 (4.92-4ubuntu1.3) disco-security; urgency=medium

  * SECURITY UPDATE: remote command execution
    - debian/patches/CVE-2019-15846.patch: ensure not to interpret '\\'
      before '\0' in src/string.c
    - CVE-2019-15846

 -- Alex Murray <email address hidden> Thu, 05 Sep 2019 11:20:47 +0930