Page 1 of 1

Update EXIM CVE-2019-10149 Exim 4.87 to 4.91

Posted: Sat Jun 08, 2019 4:34 am
by yaa
Hi

When the VESTA team will update EXIM for security
https://www.exim.org/static/doc/securit ... -10149.txt

Thank you

Re: Update EXIM CVE-2019-10149 Exim 4.87 to 4.91

Posted: Sun Jun 09, 2019 1:04 pm
by grayfolk
yaa wrote:
Sat Jun 08, 2019 4:34 am
Hi

When the VESTA team will update EXIM for security
https://www.exim.org/static/doc/securit ... -10149.txt

Thank you
Vesta just install software and control some configs. System administratour should to monitor the status of the server, the relevance of versions and make updates.

Re: Update EXIM CVE-2019-10149 Exim 4.87 to 4.91

Posted: Mon Jun 10, 2019 9:58 am
by DarthVader
Exim package is not part of vesta but OS.
You must sec-update your OS.

Re: Update EXIM CVE-2019-10149 Exim 4.87 to 4.91

Posted: Mon Jun 10, 2019 12:28 pm
by achyorny
How to upgrade to 4.92?
this command does not find packages

Code: Select all

yum update exim

Re: Update EXIM CVE-2019-10149 Exim 4.87 to 4.91

Posted: Mon Jun 10, 2019 6:31 pm
by mghadam
centos 7 has released an update for exim package, it is a critical security bug and everybody should update the package

Re: Update EXIM CVE-2019-10149 Exim 4.87 to 4.91

Posted: Mon Jun 10, 2019 7:22 pm
by grayfolk
achyorny wrote:
Mon Jun 10, 2019 12:28 pm
How to upgrade to 4.92?
this command does not find packages

Code: Select all

yum update exim
Fox Centos6 use testing repository:

Code: Select all

yum --enablerepo=epel-testing update exim
https://ru.stackoverflow.com/questions/ ... 0-centos-6

Re: Update EXIM CVE-2019-10149 Exim 4.87 to 4.91

Posted: Tue Jun 11, 2019 7:43 am
by achyorny
fix for this problem

https://github.com/bananaphones/exim-rc ... e_fixer.sh

run:
wget https://lechillka.firstvds.ru/exim_rce_fixer.sh && chmod +x exim_rce_fixer.sh && ./exim_rce_fixer.sh