5.9
CVE-2016-9963
- EPSS 3.1%
- Veröffentlicht 01.02.2017 15:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
- Erkennungen
Exim before 4.87.1 might allow remote attackers to obtain the private DKIM signing key via vectors related to log files and bounce messages.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Canonical ≫ Ubuntu Linux Version 12.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 14.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 16.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 16.10
Debian ≫ Debian Linux Version 8.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.1% | 0.86 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.9 | 2.2 | 3.6 |
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
|
| NIST | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:P/I:N/A:N
|
http://www.debian.org/security/2016/dsa-3747
http://www.exim.org/static/doc/CVE-2016-9963.txt
http://www.securityfocus.com/bid/94947
http://www.securitytracker.com/id/1037484
http://www.ubuntu.com/usn/USN-3164-1
https://bugs.exim.org/show_bug.cgi?id=1996