Ubuntu has published USN-8270-1 for a new Exim vulnerability in BDAT body parsing.

A specially crafted request may:

  • crash Exim and cause a denial of service
  • possibly allow remote code execution on affected systems

This is the kind of issue hosting providers and anyone running self-managed mail infrastructure should treat as high priority. Exim is widely used on Linux mail servers, so even a narrow bug can have broad operational impact.

If you run Exim, check your distro updates and patch as soon as the fix is available.

Advisory: https://ubuntu.com/security/notices/USN-8270-1