[SECURITY] [DLA 762-1] exim4 security update

Andreas Metzler ametzler at debian.org
Sun Dec 25 10:59:29 UTC 2016


Package        : exim4
Version        : 4.80-7+deb7u4
CVE ID         : CVE-2016-9963


Bjoern Jacke discovered that Exim, Debian's default mail transfer agent,
may leak the private DKIM signing key to the log files if specific
configuration options are met.

For Debian 7 "Wheezy", these problems have been fixed in version
4.80-7+deb7u4.

We recommend that you upgrade your exim4 packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-exim4-maintainers/attachments/20161225/1fffbe08/attachment.sig>


More information about the Pkg-exim4-maintainers mailing list