USN-8382-1: Exim vulnerabilities

Publication date

3 June 2026

Overview

Several security issues were fixed in Exim.


Packages

  • exim4 - Exim is a mail transport agent

Details

Timo Longin discovered that Exim incorrectly handled certain SMTP messages
in PIPELINING/CHUNKING configurations. A remote attacker could possibly use
this issue to perform SMTP smuggling. This issue only affected Ubuntu
14.04 LTS. (CVE-2023-51766)

It was discovered that Exim incorrectly handled certain malformed JSON
data in headers. A remote attacker could possibly use this issue to crash
Exim, resulting in a denial of service, or execute arbitrary code. This
issue only affected Ubuntu 20.04 LTS. (CVE-2026-40685)

It was discovered that Exim incorrectly handled certain malformed UTF-8
headers. A remote attacker could possibly use this issue to obtain
sensitive information. This issue only affected Ubuntu 20.04 LTS.
(CVE-2026-40686)

It was discovered that Exim incorrectly handled certain SPA resources.
A...

Timo Longin discovered that Exim incorrectly handled certain SMTP messages
in PIPELINING/CHUNKING configurations. A remote attacker could possibly use
this issue to perform SMTP smuggling. This issue only affected Ubuntu
14.04 LTS. (CVE-2023-51766)

It was discovered that Exim incorrectly handled certain malformed JSON
data in headers. A remote attacker could possibly use this issue to crash
Exim, resulting in a denial of service, or execute arbitrary code. This
issue only affected Ubuntu 20.04 LTS. (CVE-2026-40685)

It was discovered that Exim incorrectly handled certain malformed UTF-8
headers. A remote attacker could possibly use this issue to obtain
sensitive information. This issue only affected Ubuntu 20.04 LTS.
(CVE-2026-40686)

It was discovered that Exim incorrectly handled certain SPA resources.
A remote attacker could possibly use this issue to crash Exim, resulting in
a denial of service, or obtain sensitive information. This issue only
affected Ubuntu 20.04 LTS. (CVE-2026-40687)

It was discovered that Exim incorrectly handled certain CHUNKING
transfers in some GnuTLS configurations. A remote attacker could possibly
use this issue to crash Exim, resulting in a denial of service, or execute
arbitrary code. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-45185)

Warisjeet Singh discovered that Exim incorrectly handled certain proxy
connections in builds with proxy support enabled. A remote attacker could
possibly use this issue to obtain sensitive information. This issue only
affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS.
(CVE-2026-48840)


Update instructions

In general, a standard system update will make all the necessary changes.

Learn more about how to get the fixes.

The problem can be corrected by updating your system to the following package versions:

Ubuntu Release Package Version
20.04 LTS focal exim4 –  4.93-13ubuntu1.12+esm1  
exim4-base –  4.93-13ubuntu1.12+esm1  
exim4-daemon-heavy –  4.93-13ubuntu1.12+esm1  
exim4-daemon-light –  4.93-13ubuntu1.12+esm1  
exim4-dev –  4.93-13ubuntu1.12+esm1  
eximon4 –  4.93-13ubuntu1.12+esm1  
18.04 LTS bionic exim4 –  4.90.1-1ubuntu1.10+esm6  
exim4-base –  4.90.1-1ubuntu1.10+esm6  
exim4-daemon-heavy –  4.90.1-1ubuntu1.10+esm6  
exim4-daemon-light –  4.90.1-1ubuntu1.10+esm6  
exim4-dev –  4.90.1-1ubuntu1.10+esm6  
eximon4 –  4.90.1-1ubuntu1.10+esm6  
16.04 LTS xenial exim4 –  4.86.2-2ubuntu2.6+esm9  
exim4-base –  4.86.2-2ubuntu2.6+esm9  
exim4-daemon-heavy –  4.86.2-2ubuntu2.6+esm9  
exim4-daemon-light –  4.86.2-2ubuntu2.6+esm9  
exim4-dev –  4.86.2-2ubuntu2.6+esm9  
eximon4 –  4.86.2-2ubuntu2.6+esm9  
14.04 LTS trusty exim4 –  4.82-3ubuntu2.4+esm9  
exim4-base –  4.82-3ubuntu2.4+esm9  
exim4-daemon-heavy –  4.82-3ubuntu2.4+esm9  
exim4-daemon-light –  4.82-3ubuntu2.4+esm9  
exim4-dev –  4.82-3ubuntu2.4+esm9  
eximon4 –  4.82-3ubuntu2.4+esm9  

Reduce your security exposure

Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.


Have additional questions?

Talk to a member of the team ›