CVE-2025-67896General(exim / exim)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Exim before 4.99.1, with certain non-default rate-limit configurations, allows a remote heap-based buffer overflow because database records are cast directly to internal structures without validation.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-122

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • exim

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • General: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
exim

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-24: 102-24
Signal classification1 categories
General
1100.0%
Full discourse1 post
  • mel moreira@melmoreira35584
    General

    @DerekUrizar Urizar, I'm going to make it easy for you, with this you can access it. Target: guatemalavisible[.]net IP: 107.180.40.138 CVE: CVE-2025-67896 CVE-2024-3566 CVE-2023-38408 CVE-2022-37454 CVE-2021-41617 CVE-2020-15778 CVE-2019-16905 CVE-2017-8923 CVE-2013-2220 CVE-2008-3844

    Post summary

    The message lists several CVE identifiers without providing any additional details, links, or evidence of exploitation or mitigation.

    00023677
    298 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appeximexim---

Explore more