Exim Denial-of-Service Vulnerability in musl libc

Vulnerability

A denial-of-service vulnerability has been identified in Exim versions prior to 4.99.2, specifically on systems using musl libc instead of glibc. The issue arises when malformed DNS data in PTR records is processed, leading to a crash of the Exim connection instance. This behavior is linked to an oddity in how octal printing is handled by musl libc.

Impact

Exim can crash while processing DNS data, disrupting email delivery and potentially causing a temporary denial of service on the mail server.

Reproduction

To reproduce this vulnerability, Exim must be built and run with musl libc. Once the Exim daemon is active and accepting connections, an attacker can send a crafted DNS PTR record that includes malformed data. The Exim process will crash when it attempts to process the malicious DNS information.

Remediation

Users can upgrade to Exim version 4.99.2, which is available as a tarball from the Exim FTP site or directly from Git. Instructions for verifying the release signature are also provided.

Added: Apr 30, 2026, 10:25 PM
Updated: Apr 30, 2026, 10:25 PM

Vulnerability Rating

Custom Algorithm
spread
2.2
impact
0.6
exploitability
8.9
remediation
7.7
relevance
7.1
threat
4.8
urgency
2.9
incentive
8.3

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.