Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 42: 2025-d7548ec9e2 critical: exim remote SQL injection

fedora
Calendar Grey April 11, 2025
Dist Fedora Esm H88
Important security patch for Fedora 42 addresses potential remote SQL injection vulnerabilities. Update immediately to strengthen your system's defenses.
This is an update fixing CVE 2025-30232

Summary

Exim is a message transfer agent (MTA) developed at the University of

Cambridge for use on Unix systems connected to the Internet. It is

freely available under the terms of the GNU General Public Licence. In

style it is similar to Smail 3, but its facilities are more

general. There is a great deal of flexibility in the way mail can be

routed, and there are extensive facilities for checking incoming

mail. Exim can be installed in place of sendmail, although the

configuration of exim is quite different to that of sendmail.

Update Information:

This is an update fixing CVE 2025-30232. This is new version fixing possible remote SQL injection and FTBFS with gcc-15.

Change Log

* Wed Mar 26 2025 Jaroslav Škarvada - 4.98.2-1 - New version Resolves: CVE 2025-30232 * Mon Feb 24 2025 Jaroslav Škarvada - 4.98.1-1 - New version Resolves: rhbz#2346977 - Fixed possible remote SQL injection Resolves: CVE-2025-26794 - Updated exim maintainers keyring * Tue Feb 11 2025 Zbigniew Jędrzejewski-Szmek - 4.98-7 - Add sysusers.d config file to allow rpm to create users/groups automatically * Sat Feb 1 2025 Björn Esser - 4.98-6 - Add explicit BR: libxcrypt-devel * Thu Jan 16 2025 Fedora Release Engineering - 4.98-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild

References


[ 1 ] Bug #2346981 - CVE-2025-26794 exim: Exim: remote SQL injection https://bugzilla.redhat.com/show_bug.cgi?id=2346981

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-d7548ec9e2' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: exim
Product: Fedora 42
Version: 4.98.2
Release: 1.fc42
Summary: The exim mail transfer agent

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here