Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 491
Alerts This Week
Warning Icon 1 491

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 99 articles for you...
172

Ubuntu 26.04 LTS Exim Important File Access and Priv Escalation USN-8590-1

Ubuntu announced security fixes for Exim vulnerabilities affecting versions 22.04, 24.04, and 26.04 LTS, which could allow local attackers to access files or escalate privileges.. ========================================================================== Ubuntu Security Notice USN-8590-1 July 22, 2026 exim4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 26.04 LTS - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Several security issues were fixed in Exim. Software Description: - exim4: Exim is a mail transport agent Details: It was discovered that Exim incorrectly handled certain command line options. A local attacker could possibly use this issue to access files outside of the spool area. It was discovered that Exim incorrectly handled string expansion in .local files. A local attacker could possibly use this issue to escalate privileges. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS exim4 4.99.1-1ubuntu1.4 Ubuntu 24.04 LTS exim4 4.97-4ubuntu4.7 Ubuntu 22.04 LTS exim4 4.95-4ubuntu2.11 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8590-1 https://launchpad.net/bugs/2161106 Package Information: https://launchpad.net/ubuntu/+source/exim4/4.99.1-1ubuntu1.4 https://launchpad.net/ubuntu/+source/exim4/4.97-4ubuntu4.7 https://launchpad.net/ubuntu/+source/exim4/4.95-4ubuntu2.11 . Multiple security risks in Exim were addressed in Ubuntu advisory USN-8590-1, highlighting the need for timely updates.. Ubuntu Exim security patch, mail transport agent vulnerabilities, Ubuntu security notices. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 22, 2026 Important Ubuntu
89

Fedora 43 Exim Important Info Disclosure CVE-2026-48840

This is an update fixing a pre-authentication information disclosure (CVE-2026-48840).. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-71b1e9b455 2026-06-10 01:08:28.182999+00:00 -------------------------------------------------------------------------------- Name : exim Product : Fedora 43 Version : 4.99.4 Release : 1.fc43 URL : https://www.exim.org/ Summary : The exim mail transfer agent Description : Exim is a message transfer agent (MTA) developed at the University of Cambridge for use on Unix systems connected to the Internet. It is freely available under the terms of the GNU General Public Licence. In style it is similar to Smail 3, but its facilities are more general. There is a great deal of flexibility in the way mail can be routed, and there are extensive facilities for checking incoming mail. Exim can be installed in place of sendmail, although the configuration of exim is quite different to that of sendmail. -------------------------------------------------------------------------------- Update Information: This is an update fixing a pre-authentication information disclosure (CVE-2026-48840). -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 1 2026 Jaroslav Škarvada - 4.99.4-1 - New version Resolves: rhbz#2483300 Resolves: CVE-2026-48840 * Mon May 18 2026 Jaroslav Škarvada - 4.99.3-1 - New version Resolves: rhbz#2476497 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2483300 - exim-4.99.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2483300 [ 2 ] Bug #2484718 - CVE-2026-48840 exim: Exim: Information disclosure via mishandled short payloads in proxy configurations [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2484718 -------------------------------------------------------------------------------- This update can be installed withthe "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-71b1e9b455' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . An important update for Fedora 43 fixing information disclosure in Exim. Immediate action recommended.. Exim update,fedora 43,information disclosure,security advisory,important update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 09, 2026 Important Fedora
89

Fedora 44 Exim Critical Information Disclosure CVE-2026-48840

This is an update fixing a pre-authentication information disclosure (CVE-2026-48840).. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-78bf093219 2026-06-10 00:54:41.795265+00:00 -------------------------------------------------------------------------------- Name : exim Product : Fedora 44 Version : 4.99.4 Release : 1.fc44 URL : https://www.exim.org/ Summary : The exim mail transfer agent Description : Exim is a message transfer agent (MTA) developed at the University of Cambridge for use on Unix systems connected to the Internet. It is freely available under the terms of the GNU General Public Licence. In style it is similar to Smail 3, but its facilities are more general. There is a great deal of flexibility in the way mail can be routed, and there are extensive facilities for checking incoming mail. Exim can be installed in place of sendmail, although the configuration of exim is quite different to that of sendmail. -------------------------------------------------------------------------------- Update Information: This is an update fixing a pre-authentication information disclosure (CVE-2026-48840). -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 1 2026 Jaroslav Škarvada - 4.99.4-1 - New version Resolves: rhbz#2483300 Resolves: CVE-2026-48840 * Mon May 18 2026 Jaroslav Škarvada - 4.99.3-1 - New version Resolves: rhbz#2476497 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2483300 - exim-4.99.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2483300 [ 2 ] Bug #2484718 - CVE-2026-48840 exim: Exim: Information disclosure via mishandled short payloads in proxy configurations [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2484718 -------------------------------------------------------------------------------- This update can be installed withthe "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-78bf093219' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Update for Fedora 44 fixing CVE-2026-48840 pre-auth information disclosure in exim mail agent.. Fedora 44, Exim mail agent, Information disclosure, Security update, CVE-2026-48840. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 09, 2026 Critical Fedora
172

Ubuntu Exim Critical Denial of Service SMTP Smuggling Vuln 8382-1

Several security issues were fixed in Exim.. ========================================================================== Ubuntu Security Notice USN-8382-1 June 03, 2026 exim4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS - Ubuntu 14.04 LTS Summary: Several security issues were fixed in Exim. Software Description: - exim4: Exim is a mail transport agent Details: Timo Longin discovered that Exim incorrectly handled certain SMTP messages in PIPELINING/CHUNKING configurations. A remote attacker could possibly use this issue to perform SMTP smuggling. This issue only affected Ubuntu 14.04 LTS. (CVE-2023-51766) It was discovered that Exim incorrectly handled certain malformed JSON data in headers. A remote attacker could possibly use this issue to crash Exim, resulting in a denial of service, or execute arbitrary code. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-40685) It was discovered that Exim incorrectly handled certain malformed UTF-8 headers. A remote attacker could possibly use this issue to obtain sensitive information. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-40686) It was discovered that Exim incorrectly handled certain SPA resources. A remote attacker could possibly use this issue to crash Exim, resulting in a denial of service, or obtain sensitive information. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-40687) It was discovered that Exim incorrectly handled certain CHUNKING transfers in some GnuTLS configurations. A remote attacker could possibly use this issue to crash Exim, resulting in a denial of service, or execute arbitrary code. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-45185) Warisjeet Singh discovered that Exim incorrectly handled certain proxy connections in builds with proxy support enabled. A remote attacker could possibly use this issue to obtain sensitive information.This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2026-48840) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS exim4 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-base 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-daemon-heavy 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-daemon-light 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-dev 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro eximon4 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro Ubuntu 18.04 LTS exim4 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-base 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-daemon-heavy 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-daemon-light 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-dev 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro eximon4 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro Ubuntu 16.04 LTS exim4 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-base 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-daemon-heavy 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-daemon-light 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-dev 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro eximon4 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro Ubuntu 14.04 LTS exim4 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-base 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-daemon-heavy 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-daemon-light 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-dev 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro eximon4 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8382-1 CVE-2023-51766, CVE-2026-40685, CVE-2026-40686, CVE-2026-40687, CVE-2026-45185, CVE-2026-48840 . Multiple security issues in Exim on Ubuntu require attention to prevent remote attacks and potential service disruption.. Exim security, Ubuntu vulnerabilities, mail transport agent, remote access, denial of service. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 05, 2026 Critical Ubuntu
172

Ubuntu Exim Security Advisory 8382-1 CVE-2023-51766 CVE-2026-40685

Several security issues were fixed in Exim.. ========================================================================== Ubuntu Security Notice USN-8382-1 June 03, 2026 exim4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS - Ubuntu 14.04 LTS Summary: Several security issues were fixed in Exim. Software Description: - exim4: Exim is a mail transport agent Details: Timo Longin discovered that Exim incorrectly handled certain SMTP messages in PIPELINING/CHUNKING configurations. A remote attacker could possibly use this issue to perform SMTP smuggling. This issue only affected Ubuntu 14.04 LTS. (CVE-2023-51766) It was discovered that Exim incorrectly handled certain malformed JSON data in headers. A remote attacker could possibly use this issue to crash Exim, resulting in a denial of service, or execute arbitrary code. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-40685) It was discovered that Exim incorrectly handled certain malformed UTF-8 headers. A remote attacker could possibly use this issue to obtain sensitive information. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-40686) It was discovered that Exim incorrectly handled certain SPA resources. A remote attacker could possibly use this issue to crash Exim, resulting in a denial of service, or obtain sensitive information. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-40687) It was discovered that Exim incorrectly handled certain CHUNKING transfers in some GnuTLS configurations. A remote attacker could possibly use this issue to crash Exim, resulting in a denial of service, or execute arbitrary code. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-45185) Warisjeet Singh discovered that Exim incorrectly handled certain proxy connections in builds with proxy support enabled. A remote attacker could possibly use this issue to obtain sensitive information.This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2026-48840) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS exim4 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-base 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-daemon-heavy 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-daemon-light 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-dev 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro eximon4 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro Ubuntu 18.04 LTS exim4 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-base 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-daemon-heavy 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-daemon-light 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-dev 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro eximon4 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro Ubuntu 16.04 LTS exim4 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-base 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-daemon-heavy 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-daemon-light 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-dev 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro eximon4 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro Ubuntu 14.04 LTS exim4 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-base 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-daemon-heavy 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-daemon-light 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-dev 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro eximon4 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8382-1 CVE-2023-51766, CVE-2026-40685, CVE-2026-40686, CVE-2026-40687, CVE-2026-45185, CVE-2026-48840 . Exim vulnerabilities fixed in Ubuntu, affecting multiple releases and enhancing security against remote attacks. Read more.. Exim vulnerabilities Ubuntu security TCP/IP protection. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 03, 2026 Important Ubuntu
172

Ubuntu Exim Critical Denial of Service Issues USN-8382-1

Several security issues were fixed in Exim.. ========================================================================== Ubuntu Security Notice USN-8382-1 June 03, 2026 exim4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS - Ubuntu 14.04 LTS Summary: Several security issues were fixed in Exim. Software Description: - exim4: Exim is a mail transport agent Details: Timo Longin discovered that Exim incorrectly handled certain SMTP messages in PIPELINING/CHUNKING configurations. A remote attacker could possibly use this issue to perform SMTP smuggling. This issue only affected Ubuntu 14.04 LTS. (CVE-2023-51766) It was discovered that Exim incorrectly handled certain malformed JSON data in headers. A remote attacker could possibly use this issue to crash Exim, resulting in a denial of service, or execute arbitrary code. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-40685) It was discovered that Exim incorrectly handled certain malformed UTF-8 headers. A remote attacker could possibly use this issue to obtain sensitive information. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-40686) It was discovered that Exim incorrectly handled certain SPA resources. A remote attacker could possibly use this issue to crash Exim, resulting in a denial of service, or obtain sensitive information. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-40687) It was discovered that Exim incorrectly handled certain CHUNKING transfers in some GnuTLS configurations. A remote attacker could possibly use this issue to crash Exim, resulting in a denial of service, or execute arbitrary code. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-45185) Warisjeet Singh discovered that Exim incorrectly handled certain proxy connections in builds with proxy support enabled. A remote attacker could possibly use this issue to obtain sensitive information.This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2026-48840) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS exim4 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-base 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-daemon-heavy 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-daemon-light 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro exim4-dev 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro eximon4 4.93-13ubuntu1.12+esm1 Available with Ubuntu Pro Ubuntu 18.04 LTS exim4 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-base 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-daemon-heavy 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-daemon-light 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro exim4-dev 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro eximon4 4.90.1-1ubuntu1.10+esm6 Available with Ubuntu Pro Ubuntu 16.04 LTS exim4 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-base 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-daemon-heavy 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-daemon-light 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro exim4-dev 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro eximon4 4.86.2-2ubuntu2.6+esm9 Available with Ubuntu Pro Ubuntu 14.04 LTS exim4 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-base 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-daemon-heavy 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-daemon-light 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro exim4-dev 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro eximon4 4.82-3ubuntu2.4+esm9 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8382-1 CVE-2023-51766, CVE-2026-40685, CVE-2026-40686, CVE-2026-40687, CVE-2026-45185, CVE-2026-48840 . Exim vulnerabilities in Ubuntu could lead to denial of service and sensitive information disclosure. Update now to secure your system.. Exim vulnerabilities, Ubuntu security advisory, Denial of service threats. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 03, 2026 Critical Ubuntu
172

Ubuntu 26.04 Exim Critical Information Disclosure Vulnerability USN-8353-1

Exim could be made to expose sensitive information over the network.. ========================================================================== Ubuntu Security Notice USN-8353-1 June 01, 2026 exim4 vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 26.04 LTS - Ubuntu 25.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Exim could be made to expose sensitive information over the network. Software Description: - exim4: Exim is a mail transport agent Details: Warisjeet Singh discovered that Exim with SUPPORT_PROXY enabled did not properly handle memory before SMTP authentication. A remote attacker could possibly use this issue to obtain sensitive information. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS exim4 4.99.1-1ubuntu1.3 exim4-base 4.99.1-1ubuntu1.3 eximon4 4.99.1-1ubuntu1.3 Ubuntu 25.10 exim4 4.98.2-1ubuntu2.3 exim4-base 4.98.2-1ubuntu2.3 eximon4 4.98.2-1ubuntu2.3 Ubuntu 24.04 LTS exim4 4.97-4ubuntu4.6 exim4-base 4.97-4ubuntu4.6 eximon4 4.97-4ubuntu4.6 Ubuntu 22.04 LTS exim4 4.95-4ubuntu2.9 exim4-base 4.95-4ubuntu2.9 eximon4 4.95-4ubuntu2.9 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8353-1 CVE-2026-48840 Package Information: https://launchpad.net/ubuntu/+source/exim4/4.99.1-1ubuntu1.3 https://launchpad.net/ubuntu/+source/exim4/4.98.2-1ubuntu2.3 https://launchpad.net/ubuntu/+source/exim4/4.97-4ubuntu4.6 https://launchpad.net/ubuntu/+source/exim4/4.95-4ubuntu2.9 . Ensure your Ubuntu system issecure by addressing the Exim vulnerability that could expose sensitive information.. Exim Security Update, Ubuntu Exim Vulnerability, Critical Mail Transport Issue, Information Exposure Mitigation. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 01, 2026 Critical Ubuntu
172

Ubuntu Exim Critical Information Disclosure Notice 8353-1 CVE-2026-48840

Exim could be made to expose sensitive information over the network.. ========================================================================== Ubuntu Security Notice USN-8353-1 June 01, 2026 exim4 vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 26.04 LTS - Ubuntu 25.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Exim could be made to expose sensitive information over the network. Software Description: - exim4: Exim is a mail transport agent Details: Warisjeet Singh discovered that Exim with SUPPORT_PROXY enabled did not properly handle memory before SMTP authentication. A remote attacker could possibly use this issue to obtain sensitive information. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS exim4 4.99.1-1ubuntu1.3 exim4-base 4.99.1-1ubuntu1.3 eximon4 4.99.1-1ubuntu1.3 Ubuntu 25.10 exim4 4.98.2-1ubuntu2.3 exim4-base 4.98.2-1ubuntu2.3 eximon4 4.98.2-1ubuntu2.3 Ubuntu 24.04 LTS exim4 4.97-4ubuntu4.6 exim4-base 4.97-4ubuntu4.6 eximon4 4.97-4ubuntu4.6 Ubuntu 22.04 LTS exim4 4.95-4ubuntu2.9 exim4-base 4.95-4ubuntu2.9 eximon4 4.95-4ubuntu2.9 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8353-1 CVE-2026-48840 Package Information: https://launchpad.net/ubuntu/+source/exim4/4.99.1-1ubuntu1.3 https://launchpad.net/ubuntu/+source/exim4/4.98.2-1ubuntu2.3 https://launchpad.net/ubuntu/+source/exim4/4.97-4ubuntu4.6 https://launchpad.net/ubuntu/+source/exim4/4.95-4ubuntu2.9 . Exim vulnerability in Ubuntu mayexpose sensitive information. Update your system to ensure protection against this risk.. Ubuntu Exim security update, sensitive information leak, Exim vulnerability. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 01, 2026 Important Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200