Alpine: multiple exim packages: security update to 4.96.1-r0

critical Tenable Cloud Security Plugin ID 404250

Description

There are packages installed that are affected by multiple vulnerabilities referenced in the following CVEs:

- Exim NTLM Challenge Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows
remote attackers to disclose sensitive information on affected installations of Exim. Authentication is
not required to exploit this vulnerability. The specific flaw exists within the handling of NTLM challenge
requests. The issue results from the lack of proper validation of user-supplied data, which can result in
a read past the end of an allocated data structure. An attacker can leverage this vulnerability to
disclose information in the context of the service account. . Was ZDI-CAN-17433. (CVE-2023-42114)

- Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote
attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to
exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25
by default. The issue results from the lack of proper validation of user-supplied data, which can result
in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the
context of the service account. . Was ZDI-CAN-17434. (CVE-2023-42115)

- Exim SMTP Challenge Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability
allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not
required to exploit this vulnerability. The specific flaw exists within the handling of NTLM challenge
requests. The issue results from the lack of proper validation of the length of user-supplied data prior
to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute
code in the context of the service account. . Was ZDI-CAN-17515. (CVE-2023-42116)

See Also

https://security.alpinelinux.org/vuln/CVE-2023-42114

https://security.alpinelinux.org/vuln/CVE-2023-42115

https://security.alpinelinux.org/vuln/CVE-2023-42116

Plugin Details

Severity: Critical

ID: 404250

Version: Revision 1.17

Type: Local

Published: 10/31/2023

Updated: 7/2/2026

Supported Sensors: Agentless Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security

Risk Information

VPR

Risk Factor: Medium

Score: 6.9

Percentile: 96.95

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2023-42116

CVSS v3

Risk Factor: Critical

Base Score: 9.8

Temporal Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

Exploit Available: true

Exploit Ease: Exploits are available

Vulnerability Publication Date: 10/2/2023

Reference Information

CVE: CVE-2023-42114, CVE-2023-42115, CVE-2023-42116

IAVA: 2023-A-0521-S