Exim Off-by-one RCE: Exploiting CVE-2018-6789 with Fully Mitigations Bypassing | DEVCORE
We reported an overflow vulnerability in the base64 decode function of Exim on 5 February, 2018, identified as CVE-2018-6789. This bug exists since the first commit of exim, hence ALL versions are affected. According to our research, it can be leveraged to gain Pre-auth Remote Code Execution and at least 400k servers are at risk. Patched version 4.90.1 is already released and we suggest to upgrade exim immediately.
binary  security 
17 days ago by e2b
Editing binaries: easier than it sounds
Editing binaries is a trick that comes in handy a few times a year. You don’t often need to, but when you do, there’s no alternative. When I mention patching binaries, I get one of two reactions: complete shock or no reaction at all.
binary  programming  assembly 
27 days ago by nmcbean

