The STARTTLS feature in Exim through 4.94.2 allows response injection (buffering) during MTA SMTP sending.
https://www.exim.org/static/doc/security/CVE-2021-38371.txt
https://nostarttls.secvuln.info
https://lists.debian.org/debian-lts-announce/2024/10/msg00029.html