Warisjeet Singh discovered that Exim, a mail transport agent, does not properly handle PROXY frames whose declared payload length is too short for the claimed address family, which may result in information disclosure in configurations with SUPPORT_PROXY and 'host_proxy' set.
https://security-tracker.debian.org/tracker/DSA-6309-1
Continue reading...
https://security-tracker.debian.org/tracker/DSA-6309-1
Continue reading...

