Exim Off-by-one RCE: Exploiting CVE-2018-6789 with Fully Mitigations Bypassing | DEVCORE
We reported an overflow vulnerability in the base64 decode function of Exim on 5 February, 2018, identified as CVE-2018-6789. This bug exists since the first commit of exim, hence ALL versions are affected. According to our research, it can be leveraged to gain Pre-auth Remote Code Execution and at least 400k servers are at risk. Patched version 4.90.1 is already released and we suggest to upgrade exim immediately.
Editing binaries: easier than it sounds
Editing binaries is a trick that comes in handy a few times a year. You don’t often need to, but when you do, there’s no alternative. When I mention patching binaries, I get one of two reactions: complete shock or no reaction at all.
