DNSAudit.io[verified]@dnsauditPatch
Exim mail servers are vulnerable to CVE-2026-40684, which can cause crashes when processing malformed PTR DNS records; the issue is fixed in version 4.99.2.
Open Source Security mailing list@oss_securityPatch
Exim 4.99.2 releases fixes for CVE-2026-40684 through CVE-2026-40687, addressing crashes and out‑of‑bounds read/write issues involving malicious DNS data, corrupt JSON headers, large UTF‑8 trailing characters, and SPA authentication data.
CVE@CVEnewDisclosure
The text announces CVE-2026-40684, a crash vulnerability in Exim before 4.99.2 on musl libc systems triggered by malformed DNS PTR records.
Samet Geranaz@sametgeranazPatch
cPanel has announced four new CVEs affecting Exim versions older than 4.99.2 and urges users to apply patches immediately to mitigate potential exploitation.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The text announces CVE-2026-40684, detailing a Denial of Service in Exim before 4.99.2 triggered by malformed DNS PTR records, but offers no proof of concept, exploit code, or patch information.
Infoflowcloud@infoflowcloudDisclosure
CVE-2026-40684 details a denial‑of‑service vulnerability in Exim 4.99.x on musl libc systems, caused by malformed DNS PTR records, with no known exploit or patch provided in this text.