beraphin

3 exploits Active since May 2017
CVE-2017-8890 NOMISEC HIGH WORKING POC
Linux Kernel < 3.2.89 - Double Free in inet_csk_clone_lock
The inet_csk_clone_lock function in net/ipv4/inet_connection_sock.c in the Linux kernel through 4.10.15 allows attackers to cause a denial of service (double free) or possibly have unspecified other impact by leveraging use of the accept system call.
22 stars
CVSS 7.8
CVE-2018-6789 NOMISEC CRITICAL WORKING POC
Exim < 4.90.1 - Remote Code Execution via base64d Buffer Overflow
An issue was discovered in the base64d function in the SMTP listener in Exim before 4.90.1. By sending a handcrafted message, a buffer overflow may happen. This can be used to execute code remotely.
3 stars
CVSS 9.8
CVE-2017-16943 NOMISEC CRITICAL WRITEUP
Exim 4.88-4.89 - Remote Code Execution via BDAT Command Use-After-Free
The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via vectors involving BDAT commands.
CVSS 9.8