The flaw enables authenticated attackers to execute arbitrary SQL commands through specially crafted ETRN SMTP transactions when specific configuration conditions exist.
The vulnerability was reported through responsible disclosure channels on February 8, 2025, by security researcher Oscar Bataille.
The vulnerability highlights critical challenges in mail server configuration security, particularly regarding the interaction between SMTP extensions (ETRN/RFC 1985) and database backends.
The vulnerability manifests in Exim 4.98 installations meeting three specific criteria:
Attack vectors leverage the ETRN command’s serialization mechanism, which improperly sanitizes SQL queries when storing transaction metadata.
A proof-of-concept exploit might utilize SMTP session manipulation:
This injection pattern could compromise SQLite databases containing delivery hints, sender verify records, and TLS session cache data.
Successful exploitation enables:
Exim maintainers have released patched versions through standard update channels. System administrators must:
Apply security updates immediately via OS package managers or source compilation from code.exim.org
As of patch deployment, no active exploits have been observed in the wild, but the relative ease of exploitation suggests rapid weaponization is likely.
All organizations using Exim for mail routing should prioritize this update, particularly those handling sensitive communications or operating in regulated industries.
Free Webinar: Better SOC with Interactive Malware Sandbox for Incident Response and Threat Hunting – Register Here
The post Exim Mail Transfer Vulnerability Let Attackers Inject Malicious SQL Queries appeared first on Cyber Security News.
While we're still waiting for confirmation of a release date for the second season of…
With Subnautica 2 finally getting its May 14 early access release date, it seems Steam's…
Star Wars: Galactic Racer is set to release for PS5, Xbox Series X|S, and PC…
As the wait goes on for Marvel to release the Avengers: Doomsday trailer recently shown…
Considering what it offers, Disney+ is one of the best streaming services on the block.…
AMHERST — Restoration of historic wood panels will be completed as part of the $46.1…
This website uses cookies.