Use-After-Free Vulnerability in Exim Exposes Systems to Privilege Escalation

Use-After-Free Vulnerability in Exim Exposes Systems to Privilege Escalation
Summary: A critical security vulnerability (CVE-2025-30232) has been discovered in Exim, a popular message transfer agent for Unix systems. This use-after-free vulnerability may allow local privilege escalation under specific conditions. Administrators of affected Exim versions are advised to apply security patches promptly and review their security practices to mitigate risks.

Affected: Exim (versions 4.96, 4.97, 4.98, and 4.98.1)

Keypoints :

  • Vulnerability tracked as CVE-2025-30232 can lead to privilege escalation.
  • Command-line access is required to exploit this security flaw.
  • Administrators should apply security patches and monitor updates from the Exim Git repository.
  • Reviewing security practices is essential to limit unauthorized command-line access.

Source: https://securityonline.info/cve-2025-30232-use-after-free-vulnerability-in-exim-exposes-systems-to-privilege-escalation/