Loading
Exim 4 before 4.94.2 allows Heap-based Buffer Overflow because it mishandles "-F '.('" on the command line, and thus may allow privilege escalation from any user to root. This occurs because of the interpretation of negative sizes in strncpy.
Use CWE-787, Exim vendor hub and Exim product page to widen CVE-2020-28013 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-42117, CVE-2023-42116 and CVE-2023-42115 for nearby disclosures in the same product family.