Security researchers have discovered a critical vulnerability in the popular server-based email client Exim that allows attackers to bypass security and send malicious attachments. More than 1.5 million servers around the world are at risk.

Image Source: Aaron McLean / Unsplash

Cybersecurity experts identified 10 days ago a serious vulnerability in Exim software, one of the most common mail servers in the world, Ars Technica reports. The vulnerability, identified as CVE-2024-39929, allows attackers to bypass standard security mechanisms and send emails with executable attachments that can pose a serious threat to end users.

According to cyber threat intelligence company Censys, of the more than 6.5 million public SMTP servers currently on the Internet, 4.8 million (about 74%) are running Exim. More than 1.5 million Exim servers (approximately 31%) use vulnerable versions of the software.

The vulnerability, CVE-2024-39929, is rated 9.1 out of 10 on the CVSS severity scale and is due to an error in the handling of multi-line headers described in RFC 2231. Heiko Schlittermann, a member of the Exim development team, has confirmed the vulnerability. vulnerability, calling it a “major security issue.”

While there are currently no reports of active exploitation of the bug, experts warn of a high likelihood of targeted attacks in the near future. They recalled a 2020 case in which the hacker group Sandworm exploited another vulnerability in Exim (CVE-2019-10149) to launch massive attacks on servers.

Although a successful attack requires the end user to launch a malicious attachment, experts emphasize that social engineering techniques remain one of the most effective ways to compromise systems. Experts recommend that Exim server administrators update their software to the latest version as soon as possible to protect their systems from potential attacks.

The CVE-2024-39929 vulnerability is present in all versions of Exim up to and including 4.97.1. The fix is ​​available in Release Candidate 3 version 4.98.

admin

Share
Published by
admin

Recent Posts

The US government considers GlobalFoundries a good candidate to save Intel

Until now, it was believed that large suppliers of semiconductor products such as Qualcomm and…

27 seconds ago

Microsoft and Ubisoft have solved the problem of Assassin’s Creed compatibility with Windows 11 24H2

Microsoft has lifted restrictions on updating Windows 11 to version 24H2 for computers running Assassin's…

30 seconds ago

Windows 11 will become smarter: Microsoft is testing AI file search

Microsoft is testing a new artificial intelligence (AI)-powered search feature in the latest build for…

1 hour ago

Merger instead of sale: Perplexity AI wants to save TikTok in the US

Perplexity AI proposed on Saturday, a day before TikTok was blocked in the United States,…

1 hour ago

Battle Shapers – fear of ambition. Review

Not defined Roguelikes with a first-person perspective are a fairly niche genre segment, but they…

6 hours ago

ASRock introduced industrial mini-PCs and motherboards based on Intel Arrow Lake-H and AMD Ryzen 300 AI

ASRock Industrial, according to the CNX-Software resource, presented industrial computers of a small form factor…

7 hours ago