home.social

#exim — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #exim, aggregated by home.social.

  1. Did a quick merge of a testing branch into main for my #gmail API based MTA, then heading out to lunch and shopping.

    Totally should have done a quick test, as no email is arriving, so I assume #exim is busy queuing it while the MTA throws errors.

    Bad ScottE. Now I have to login again when we get home, rather than just making a drink and relaxing. Grrr.

  2. Did a quick merge of a testing branch into main for my #gmail API based MTA, then heading out to lunch and shopping.

    Totally should have done a quick test, as no email is arriving, so I assume #exim is busy queuing it while the MTA throws errors.

    Bad ScottE. Now I have to login again when we get home, rather than just making a drink and relaxing. Grrr.

  3. Did a quick merge of a testing branch into main for my #gmail API based MTA, then heading out to lunch and shopping.

    Totally should have done a quick test, as no email is arriving, so I assume #exim is busy queuing it while the MTA throws errors.

    Bad ScottE. Now I have to login again when we get home, rather than just making a drink and relaxing. Grrr.

  4. Did a quick merge of a testing branch into main for my #gmail API based MTA, then heading out to lunch and shopping.

    Totally should have done a quick test, as no email is arriving, so I assume #exim is busy queuing it while the MTA throws errors.

    Bad ScottE. Now I have to login again when we get home, rather than just making a drink and relaxing. Grrr.

  5. Did a quick merge of a testing branch into main for my #gmail API based MTA, then heading out to lunch and shopping.

    Totally should have done a quick test, as no email is arriving, so I assume #exim is busy queuing it while the MTA throws errors.

    Bad ScottE. Now I have to login again when we get home, rather than just making a drink and relaxing. Grrr.

  6. the #postgresql dump/restore is on a VM which powers #exim build farm, generously provided by @beasts -- they're great

  7. We are very close to a new OpenBSD release. "You Have Installed OpenBSD. Now For The Daily Tasks." nxdomain.no/~peter/openbsd_ins can help you prepare for the upgrade.

    If you are using exim as your MTA (or any other non-base system MTA), "OpenSMTPD Is The Mail Server For The Future" nxdomain.no/~peter/time_for_op contains useful pointers for a better mail future.

    #openbsd #newrelease #openbsd79 #opensmtpd #email #smtp #rspamd #antispam #spam #exim

  8. We are very close to a new OpenBSD release. "You Have Installed OpenBSD. Now For The Daily Tasks." nxdomain.no/~peter/openbsd_ins can help you prepare for the upgrade.

    If you are using exim as your MTA (or any other non-base system MTA), "OpenSMTPD Is The Mail Server For The Future" nxdomain.no/~peter/time_for_op contains useful pointers for a better mail future.

    #openbsd #newrelease #openbsd79 #opensmtpd #email #smtp #rspamd #antispam #spam #exim

  9. We are very close to a new OpenBSD release. "You Have Installed OpenBSD. Now For The Daily Tasks." nxdomain.no/~peter/openbsd_ins can help you prepare for the upgrade.

    If you are using exim as your MTA (or any other non-base system MTA), "OpenSMTPD Is The Mail Server For The Future" nxdomain.no/~peter/time_for_op contains useful pointers for a better mail future.

    #openbsd #newrelease #openbsd79 #opensmtpd #email #smtp #rspamd #antispam #spam #exim

  10. We are very close to a new OpenBSD release. "You Have Installed OpenBSD. Now For The Daily Tasks." nxdomain.no/~peter/openbsd_ins can help you prepare for the upgrade.

    If you are using exim as your MTA (or any other non-base system MTA), "OpenSMTPD Is The Mail Server For The Future" nxdomain.no/~peter/time_for_op contains useful pointers for a better mail future.

    #openbsd #newrelease #openbsd79 #opensmtpd #email #smtp #rspamd #antispam #spam #exim

  11. We are very close to a new OpenBSD release. "You Have Installed OpenBSD. Now For The Daily Tasks." nxdomain.no/~peter/openbsd_ins can help you prepare for the upgrade.

    If you are using exim as your MTA (or any other non-base system MTA), "OpenSMTPD Is The Mail Server For The Future" nxdomain.no/~peter/time_for_op contains useful pointers for a better mail future.

    #openbsd #newrelease #openbsd79 #opensmtpd #email #smtp #rspamd #antispam #spam #exim

  12. Another day, another critical Exim vulnerability. CVE-2026-45185 is a use-after-free (UAF) flaw, dubbed "Dead.Letter," that grants unauthenticated remote code execution on affected mail servers. XBOW researcher Federico Kirschbaum uncovered the bug, leading to a swift patch in Exim 4.99.3. Don't delay: update your internet-exposed Exim instances, especially if running GnuTLS on Ubuntu/Debian. This…

    tpp.blog/1j9ec64

    #cybersecurity #exim #cve202645185

    🤖 This post was AI-generated.

  13. 🛡️ Exim corregge una falla critica che esponeva i server email a RCE: aggiornare subito riduce il rischio di compromissioni e downtime. #Cybersecurity #Exim

    🔗 tomshw.it/hardware/exim-cve-20

  14. 🛡️ Exim corregge una falla critica che esponeva i server email a RCE: aggiornare subito riduce il rischio di compromissioni e downtime. #Cybersecurity #Exim

    🔗 tomshw.it/hardware/exim-cve-20

  15. 🛡️ Exim corregge una falla critica che esponeva i server email a RCE: aggiornare subito riduce il rischio di compromissioni e downtime. #Cybersecurity #Exim

    🔗 tomshw.it/hardware/exim-cve-20

  16. Exim Flaw Exposes Servers to Remote Code Execution

    A critical flaw in Exim, tracked as CVE-2026-45185, leaves servers vulnerable to remote code execution if they're running specific builds, but thankfully, a remediation was published in Exim version 4.99.3. This vulnerability is triggered during TLS shutdown while handling certain SMTP traffic, allowing attackers to exploit it.

    osintsights.com/exim-flaw-expo

    #RemoteCodeExecution #Exim #Cve202645185 #GnuTransportLayerSecurity #Starttls

  17. Exim Flaw Exposes Servers to Remote Code Execution

    A critical flaw in Exim, tracked as CVE-2026-45185, leaves servers vulnerable to remote code execution if they're running specific builds, but thankfully, a remediation was published in Exim version 4.99.3. This vulnerability is triggered during TLS shutdown while handling certain SMTP traffic, allowing attackers to exploit it.

    osintsights.com/exim-flaw-expo

    #RemoteCodeExecution #Exim #Cve202645185 #GnuTransportLayerSecurity #Starttls

  18. Is there some "test kit" for #exim for mail deliveries, i.e. I have a bunch of mails and want to make sure they get correctly accepted (or refused)?

  19. Is there some "test kit" for #exim for mail deliveries, i.e. I have a bunch of mails and want to make sure they get correctly accepted (or refused)?

  20. Is there some "test kit" for #exim for mail deliveries, i.e. I have a bunch of mails and want to make sure they get correctly accepted (or refused)?

  21. Is there some "test kit" for #exim for mail deliveries, i.e. I have a bunch of mails and want to make sure they get correctly accepted (or refused)?

  22. Is there some "test kit" for #exim for mail deliveries, i.e. I have a bunch of mails and want to make sure they get correctly accepted (or refused)?

  23. 🚨 CVE-2026-45185 (Dead.Letter)

    Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbitrary code.

    ℹ️ Additional info on ZEN SecDB secdb.nttzen.cloud/cve/detail/

    #nttdata #zen #secdb #infosec
    #deadletter #cve202645185 #exim #gnutls

  24. 🚨 CVE-2026-45185 (Dead.Letter)

    Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbitrary code.

    ℹ️ Additional info on ZEN SecDB secdb.nttzen.cloud/cve/detail/

    #nttdata #zen #secdb #infosec
    #deadletter #cve202645185 #exim #gnutls

  25. 🚨 CVE-2026-45185 (Dead.Letter)

    Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An unauthenticated network attacker exploiting this vulnerability could execute arbitrary code.

    ℹ️ Additional info on ZEN SecDB secdb.nttzen.cloud/cve/detail/

    #nttdata #zen #secdb #infosec
    #deadletter #cve202645185 #exim #gnutls

  26. Krytyczna podatność w Eximie – serwerze pocztowym obsługującym pół Internetu. Znaleziona ze wsparciem AI.

    W 2023 roku około 59% publicznych serwerów pocztowych to właśnie Exim. Właśnie załatano oraz opublikowano szczegóły podatności o ksywce Dead Letter, dzięki której atakujący mogą wykonywać kod na serwerze (RCE), bez uwierzytelnienia, w pełni zdalnie. Luka CVE-2026-45185 otrzymała “wycenę” 9.8/10 w skali CVSS. Podatne są Eximy w wersjach od 4.97...

    #WBiegu #Ai #Exim #Podatność #Rce

    sekurak.pl/krytyczna-podatnosc

  27. Krytyczna podatność w Eximie – serwerze pocztowym obsługującym pół Internetu. Znaleziona ze wsparciem AI.

    W 2023 roku około 59% publicznych serwerów pocztowych to właśnie Exim. Właśnie załatano oraz opublikowano szczegóły podatności o ksywce Dead Letter, dzięki której atakujący mogą wykonywać kod na serwerze (RCE), bez uwierzytelnienia, w pełni zdalnie. Luka CVE-2026-45185 otrzymała “wycenę” 9.8/10 w skali CVSS. Podatne są Eximy w wersjach od 4.97...

    #WBiegu #Ai #Exim #Podatność #Rce

    sekurak.pl/krytyczna-podatnosc

  28. Krytyczna podatność w Eximie – serwerze pocztowym obsługującym pół Internetu. Znaleziona ze wsparciem AI.

    W 2023 roku około 59% publicznych serwerów pocztowych to właśnie Exim. Właśnie załatano oraz opublikowano szczegóły podatności o ksywce Dead Letter, dzięki której atakujący mogą wykonywać kod na serwerze (RCE), bez uwierzytelnienia, w pełni zdalnie. Luka CVE-2026-45185 otrzymała “wycenę” 9.8/10 w skali CVSS. Podatne są Eximy w wersjach od 4.97...

    #WBiegu #Ai #Exim #Podatność #Rce

    sekurak.pl/krytyczna-podatnosc

  29. Krytyczna podatność w Eximie – serwerze pocztowym obsługującym pół Internetu. Znaleziona ze wsparciem AI.

    W 2023 roku około 59% publicznych serwerów pocztowych to właśnie Exim. Właśnie załatano oraz opublikowano szczegóły podatności o ksywce Dead Letter, dzięki której atakujący mogą wykonywać kod na serwerze (RCE), bez uwierzytelnienia, w pełni zdalnie. Luka CVE-2026-45185 otrzymała “wycenę” 9.8/10 w skali CVSS. Podatne są Eximy w wersjach od 4.97...

    #WBiegu #Ai #Exim #Podatność #Rce

    sekurak.pl/krytyczna-podatnosc

  30. Krytyczna podatność w Eximie – serwerze pocztowym obsługującym pół Internetu. Znaleziona ze wsparciem AI.

    W 2023 roku około 59% publicznych serwerów pocztowych to właśnie Exim. Właśnie załatano oraz opublikowano szczegóły podatności o ksywce Dead Letter, dzięki której atakujący mogą wykonywać kod na serwerze (RCE), bez uwierzytelnienia, w pełni zdalnie. Luka CVE-2026-45185 otrzymała “wycenę” 9.8/10 w skali CVSS. Podatne są Eximy w wersjach od 4.97...

    #WBiegu #Ai #Exim #Podatność #Rce

    sekurak.pl/krytyczna-podatnosc

  31. 🚀 Ah, another day, another #CVE nobody asked for. Humans vs. #AI in a race to exploit #Exim, because *obviously* that's what we need—Skynet learning to hack email servers. 😂 But hey, at least the buzzwords and pentest pitches are here to save us from the tedium of actual #security work. 📉
    xbow.com/blog/dead-letter-cve- #Skynet #Hacking #HackerNews #ngated

  32. 🚀 Ah, another day, another #CVE nobody asked for. Humans vs. #AI in a race to exploit #Exim, because *obviously* that's what we need—Skynet learning to hack email servers. 😂 But hey, at least the buzzwords and pentest pitches are here to save us from the tedium of actual #security work. 📉
    xbow.com/blog/dead-letter-cve- #Skynet #Hacking #HackerNews #ngated

  33. 🚀 Ah, another day, another #CVE nobody asked for. Humans vs. #AI in a race to exploit #Exim, because *obviously* that's what we need—Skynet learning to hack email servers. 😂 But hey, at least the buzzwords and pentest pitches are here to save us from the tedium of actual #security work. 📉
    xbow.com/blog/dead-letter-cve- #Skynet #Hacking #HackerNews #ngated

  34. 🚀 Ah, another day, another #CVE nobody asked for. Humans vs. #AI in a race to exploit #Exim, because *obviously* that's what we need—Skynet learning to hack email servers. 😂 But hey, at least the buzzwords and pentest pitches are here to save us from the tedium of actual #security work. 📉
    xbow.com/blog/dead-letter-cve- #Skynet #Hacking #HackerNews #ngated

  35. 🚀 Ah, another day, another #CVE nobody asked for. Humans vs. #AI in a race to exploit #Exim, because *obviously* that's what we need—Skynet learning to hack email servers. 😂 But hey, at least the buzzwords and pentest pitches are here to save us from the tedium of actual #security work. 📉
    xbow.com/blog/dead-letter-cve- #Skynet #Hacking #HackerNews #ngated