CVE-2014-2957

Source
https://nvd.nist.gov/vuln/detail/CVE-2014-2957
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2014-2957.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2014-2957
Downstream
Related
Published
2014-09-04T17:55:05Z
Modified
2025-08-09T20:01:28Z
Summary
[none]
Details

The dmarcprocess function in dmarc.c in Exim before 4.82.1, when EXPERIMENTALDMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.

References

Affected packages