[CLSA-2026:1787398969] exim: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2026-08-22 11:43:00 UTC
Description:
- Rebuilt with rebrand to TuxCare ELS - CVE-2026-66140: fixed upstream in 4.99.5 - restrict names permitted for named-queues - CVE-2026-66141: fixed upstream in 4.99.5 - do not expand local_part from a .forward file in a pipe transport under force_command
Updated packages:
  • exim-4.99.5-1.el9_2.tuxcare.els1.x86_64.rpm
    sha:6b0c16751d7e9376bfe1be0b66793d1d008ff93a3949db03c007758e9b533669
  • exim-greylist-4.99.5-1.el9_2.tuxcare.els1.x86_64.rpm
    sha:373668bab29d9b059666b1ef712f65a24d59d98c18544eba3c731acb940c9584
  • exim-mon-4.99.5-1.el9_2.tuxcare.els1.x86_64.rpm
    sha:5d7bd2c3d737beeab4f62a013c7cfed5ce32c77daf63b1cbfd95b979b8c548fc
  • exim-mysql-4.99.5-1.el9_2.tuxcare.els1.x86_64.rpm
    sha:277015b1315c231dee691d52e3494c6553b13f638ffd6137d5ddf80f94005ba1
  • exim-pgsql-4.99.5-1.el9_2.tuxcare.els1.x86_64.rpm
    sha:4caddaabac0933a494fd69e564f1b1daa8f4500931843dd77893bb3693f367f1
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.