CVE-2024-39929

Description

A vulnerability was found in the Exim package. Exim is vulnerable to bypassing the $mime_filename extension-blocking protection mechanism. This flaw could potentially result in delivering malicious executable attachments to end users, which would require their interaction to run.

Statement

Exim is not shipped in any Red Hat Offerings.

Understanding the Weakness (CWE)

Access Control

Technical Impact: Bypass Protection Mechanism

Frequently Asked Questions

Want to get errata notifications? Sign up here.