This script is Copyright (C) 2017 Tenable Network Security, Inc.
The remote Gentoo host is missing one or more security-related
The remote host is affected by the vulnerability described in GLSA-201709-19
(Exim: Local privilege escalation)
Exim supports the use of multiple “-p” command line arguments
causing a memory leak. This could lead to a stack-clash in user-space and
as result the attacker can, “clash” or “smash” the stack or
another memory region, or “jump” over the stack guard-page.
A local attacker could obtain root privileges.
There is no known workaround at this time.
See also :
All Exim users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose '>=mail-mta/exim-4.89-r1'
Risk factor :
Low / CVSS Base Score : 2.1