This is new exim version fixing CVE-2025-67896.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-223569b08a 2026-01-20 01:41:34.264081+00:00 -------------------------------------------------------------------------------- Name : exim Product : Fedora 43 Version : 4.99.1 Release : 1.fc43 URL : https://www.exim.org/ Summary : The exim mail transfer agent Description : Exim is a message transfer agent (MTA) developed at the University of Cambridge for use on Unix systems connected to the Internet. It is freely available under the terms of the GNU General Public Licence. In style it is similar to Smail 3, but its facilities are more general. There is a great deal of flexibility in the way mail can be routed, and there are extensive facilities for checking incoming mail. Exim can be installed in place of sendmail, although the configuration of exim is quite different to that of sendmail. -------------------------------------------------------------------------------- Update Information: This is new exim version fixing CVE-2025-67896. -------------------------------------------------------------------------------- ChangeLog: * Sat Jan 3 2026 Jaroslav \u0160karvada - 4.99.1-1 - New version Resolves: CVE-2025-67896 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2423180 - exim-4.99.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2423180 [ 2 ] Bug #2423183 - CVE-2025-26794 & CWE-122, CWE-787, CWE-843 in Exim 4.99 https://bugzilla.redhat.com/show_bug.cgi?id=2423183 [ 3 ] Bug #2430489 - CVE-2025-67896 exim: Exim: Remote heap corruption vulnerability [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2430489 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-223569b08a' atthe command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Fixes critical remote heap corruption in Exim on Fedora 43 due to CVE-2025-67896 with new updates available.. Exim Upgrade, Fedora Security, Remote Heap Fixes, Mail Transfer Agent, CVE-2025-67896. . Severity: Critical. LinuxSecurity.com Team
An update that solves three vulnerabilities and has two fixes is now available. . SUSE Security Update: Security update for ldb, samba ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:1440-1 Rating: important References: #1182830 #1183572 #1183574 #1184677 #14571 Cross-References: CVE-2020-27840 CVE-2021-20254 CVE-2021-20277 CVSS scores: CVE-2020-27840 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2021-20254 (SUSE): 7.1 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L CVE-2021-20277 (SUSE): 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H Affected Products: SUSE Enterprise Storage 7 ______________________________________________________________________________ An update that solves three vulnerabilities and has two fixes is now available. Description: This update for ldb, samba fixes the following issues: - ldb was updated to 2.2.1 - CVE-2021-20277: Fixed an out of bounds read in ldb_handler_fold (bsc#1183574). - CVE-2021-20254: Fixed a buffer overrun in sids_to_unixids() (bsc#1184677). - CVE-2020-27840: Fixed an unauthenticated remote heap corruption via bad DNs (bsc#1183572). - samba was updated to 4.13.6 - CVE-2021-20277: Fixed an out of bounds read in ldb_handler_fold (bsc#1183574). - CVE-2021-20254: Fixed a buffer overrun in sids_to_unixids() (bsc#1184677). - CVE-2020-27840: Fixed an unauthenticated remote heap corruption via bad DNs (bsc#1183572). - Spec file fixes around systemd and requires; (bsc#1182830); Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Enterprise Storage 7: zypper in-t patch SUSE-Storage-7-2021-1440=1 Package List: - SUSE Enterprise Storage 7 (aarch64 x86_64): ctdb-4.13.6+git.211.555d60b24ba-3.9.1 ctdb-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 ldb-debugsource-2.2.1-4.3.1 libdcerpc-binding0-4.13.6+git.211.555d60b24ba-3.9.1 libdcerpc-binding0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libdcerpc0-4.13.6+git.211.555d60b24ba-3.9.1 libdcerpc0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libldb2-2.2.1-4.3.1 libldb2-debuginfo-2.2.1-4.3.1 libndr-krb5pac0-4.13.6+git.211.555d60b24ba-3.9.1 libndr-krb5pac0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libndr-nbt0-4.13.6+git.211.555d60b24ba-3.9.1 libndr-nbt0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libndr-standard0-4.13.6+git.211.555d60b24ba-3.9.1 libndr-standard0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libndr1-4.13.6+git.211.555d60b24ba-3.9.1 libndr1-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libnetapi0-4.13.6+git.211.555d60b24ba-3.9.1 libnetapi0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-credentials0-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-credentials0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-errors0-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-errors0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-hostconfig0-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-hostconfig0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-passdb0-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-passdb0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-util0-4.13.6+git.211.555d60b24ba-3.9.1 libsamba-util0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libsamdb0-4.13.6+git.211.555d60b24ba-3.9.1 libsamdb0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libsmbclient0-4.13.6+git.211.555d60b24ba-3.9.1 libsmbclient0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libsmbconf0-4.13.6+git.211.555d60b24ba-3.9.1 libsmbconf0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libsmbldap2-4.13.6+git.211.555d60b24ba-3.9.1 libsmbldap2-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libtevent-util0-4.13.6+git.211.555d60b24ba-3.9.1 libtevent-util0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 libwbclient0-4.13.6+git.211.555d60b24ba-3.9.1 libwbclient0-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 python3-ldb-2.2.1-4.3.1 python3-ldb-debuginfo-2.2.1-4.3.1 samba-4.13.6+git.211.555d60b24ba-3.9.1 samba-ceph-4.13.6+git.211.555d60b24ba-3.9.1 samba-ceph-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 samba-client-4.13.6+git.211.555d60b24ba-3.9.1 samba-client-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 samba-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 samba-debugsource-4.13.6+git.211.555d60b24ba-3.9.1 samba-libs-4.13.6+git.211.555d60b24ba-3.9.1 samba-libs-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 samba-libs-python3-4.13.6+git.211.555d60b24ba-3.9.1 samba-libs-python3-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 samba-winbind-4.13.6+git.211.555d60b24ba-3.9.1 samba-winbind-debuginfo-4.13.6+git.211.555d60b24ba-3.9.1 References: https://www.suse.com/security/cve/CVE-2020-27840.html https://www.suse.com/security/cve/CVE-2021-20254.html https://www.suse.com/security/cve/CVE-2021-20277.html https://bugzilla.suse.com/1182830 https://bugzilla.suse.com/1183572 https://bugzilla.suse.com/1183574 https://bugzilla.suse.com/1184677 https://bugzilla.suse.com/14571 . SUSE Vulnerability Patch: Addresses various bugs in ldb and samba featuring critical security enhancements and setup guidelines.. SUSE Security, ldb Update, samba Security, Software Patch, System Update. . Severity: Important. LinuxSecurity.com Team
An update that fixes two vulnerabilities is now available. . SUSE Security Update: Security update for ldb ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:0944-1 Rating: important References: #1183572 #1183574 Cross-References: CVE-2020-27840 CVE-2021-20277 CVSS scores: CVE-2020-27840 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2021-20277 (SUSE): 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H Affected Products: SUSE Manager Server 4.0 SUSE Manager Retail Branch Server 4.0 SUSE Manager Proxy 4.0 SUSE Linux Enterprise Server for SAP 15-SP1 SUSE Linux Enterprise Server 15-SP1-LTSS SUSE Linux Enterprise Server 15-SP1-BCL SUSE Linux Enterprise Module for Python2 15-SP3 SUSE Linux Enterprise Module for Python2 15-SP2 SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS SUSE Enterprise Storage 6 SUSE CaaS Platform 4.0 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: This update for ldb fixes the following issues: - CVE-2020-27840: Fixed an unauthenticated remote heap corruption via bad DNs (bsc#1183572). - CVE-2021-20277: Fixed an out of bounds read in ldb_handler_fold (bsc#1183574). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Manager Server 4.0: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.0-2021-944=1 - SUSE Manager RetailBranch Server 4.0: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch-Server-4.0-2021-944=1 - SUSE Manager Proxy 4.0: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.0-2021-944=1 - SUSE Linux Enterprise Server for SAP 15-SP1: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP1-2021-944=1 - SUSE Linux Enterprise Server 15-SP1-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-SP1-LTSS-2021-944=1 - SUSE Linux Enterprise Server 15-SP1-BCL: zypper in -t patch SUSE-SLE-Product-SLES-15-SP1-BCL-2021-944=1 - SUSE Linux Enterprise Module for Python2 15-SP3: zypper in -t patch SUSE-SLE-Module-Python2-15-SP3-2021-944=1 - SUSE Linux Enterprise Module for Python2 15-SP2: zypper in -t patch SUSE-SLE-Module-Python2-15-SP2-2021-944=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-LTSS-2021-944=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-ESPOS-2021-944=1 - SUSE Enterprise Storage 6: zypper in -t patch SUSE-Storage-6-2021-944=1 - SUSE CaaS Platform 4.0: To install this update, use the SUSE CaaS Platform 'skuba' tool. It will inform you if it detects new updates and let you then trigger updating of the complete cluster in a controlled way. Package List: - SUSE Manager Server 4.0 (ppc64le s390x x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 - SUSE Manager Server 4.0 (x86_64): libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 - SUSE Manager Retail BranchServer 4.0 (x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 - SUSE Manager Proxy 4.0 (x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 - SUSE Linux Enterprise Server for SAP 15-SP1 (ppc64le x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 - SUSE Linux Enterprise Server for SAP 15-SP1 (x86_64): libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 - SUSE Linux Enterprise Server 15-SP1-LTSS (aarch64 ppc64le s390x x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 - SUSE Linux Enterprise Server 15-SP1-LTSS (x86_64): libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 - SUSE Linux Enterprise Server 15-SP1-BCL (x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 - SUSE Linux Enterprise Module for Python2 15-SP3 (aarch64 ppc64le s390x x86_64): ldb-debugsource-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 - SUSE Linux Enterprise Module for Python2 15-SP2 (aarch64 ppc64le s390x x86_64): ldb-debugsource-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (aarch64 x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (x86_64): libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS (aarch64 x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS (x86_64): libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 - SUSE Enterprise Storage 6 (aarch64 x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 - SUSE Enterprise Storage 6 (x86_64): libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 - SUSE CaaS Platform 4.0 (x86_64): ldb-debugsource-1.4.6-3.8.1 ldb-tools-1.4.6-3.8.1 ldb-tools-debuginfo-1.4.6-3.8.1 libldb-devel-1.4.6-3.8.1 libldb1-1.4.6-3.8.1 libldb1-32bit-1.4.6-3.8.1 libldb1-32bit-debuginfo-1.4.6-3.8.1 libldb1-debuginfo-1.4.6-3.8.1 python-ldb-1.4.6-3.8.1 python-ldb-debuginfo-1.4.6-3.8.1 python-ldb-devel-1.4.6-3.8.1 python3-ldb-1.4.6-3.8.1 python3-ldb-debuginfo-1.4.6-3.8.1 python3-ldb-devel-1.4.6-3.8.1 References: https://www.suse.com/security/cve/CVE-2020-27840.html https://www.suse.com/security/cve/CVE-2021-20277.html https://bugzilla.suse.com/1183572 https://bugzilla.suse.com/1183574 . The recent security patch from SUSE focuses on mitigating remote heap corruption and out-of-bound read risks within ldb software.. remote heap corruption, ldb security advisory, SUSE Linux update, security vulnerabilities, SUSE patches. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.