This script is Copyright (C) 2004-2012 Tenable Network Security, Inc.
Synopsis :
The remote SMTP server has multiple buffer overflow vulnerabilities.
Description :
The remote version of Exim has multiple remote stack buffer overflow
vulnerabilities when header syntax checking is enabled. It should be
noted that this is not the default configuration. A remote attacker
could exploit this to execute arbitrary code.
See also :
http://archives.neohapsis.com/archives/fulldisclosure/2004-05/0264.html
Solution :
Upgrade to Exim 4.32 or later, or disable header syntax checking in
exim.conf.
Risk factor :
Medium / CVSS Base Score : 6.8
(CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P)
Family: SMTP problems
Nessus Plugin ID: 12232 (exim_mult_overflow.nasl)
CVE ID: CVE-2004-0399
CVE-2004-0400