CVE-2026-40687
In Exim before 4.99.2, when the SPA authentication driver is used with an adversarial SPA resource, there can be an out-of-bounds write that crashes the connection instance, or erroneous data processing that divulges data from uninitialized heap memory.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 4.8
- CVSS vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L
- EPSS probability
- 0.37%
- CWE
- CWE-909
- Published
- 2026-04-30
- Last modified
- 2026-05-01
Affected products
- Exim Exim
Weakness type
Related vulnerabilities
- CVE-2025-8117 — Account Takeover via Reset Password Functionality in PAD CMS
- CVE-2025-54410 — Moby's Firewalld reload removes bridge network isolation
- CVE-2025-54388 — Moby's Firewalld reload makes published container ports accessible from remote hosts
- CVE-2024-53845 — AES/CBC Constant IV Vulnerability in ESPTouch v2
- CVE-2024-8178 — Multiple issues in ctl(4) CAM Target Layer
- CVE-2024-32945 — LaTeX post content manipulation via renderer state leak across contexts
- CVE-2022-0175 — A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly...
- CVE-2022-0382 — An information leak flaw was found due to uninitialized memory in the Linux kernel's TIPC protocol...