CVE-2026-66141 Details
Description
Exim before 4.99.5 allows .forward privilege escalation because force_command for a pipe transport is mishandled.
A privilege escalation vulnerability has been identified in Exim versions prior to 4.99.5. The issue arises from the improper handling of the 'force_command' option in pipe transports, allowing local users to exploit .forward files for unauthorized privilege escalation. This vulnerability affects all Exim installations with certain configurations that enable the exploitation.
Users are advised to upgrade to Exim version 4.99.5. The fixed version is available on the Exim FTP site and the Exim GitHub repository. Instructions for verifying the digital signature of the release are also available on the Exim website.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jul 24, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://openwall.com/lists/oss-security/2026/07/22/9 | [email protected] | Mailing ListThird Party Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-829 | Inclusion of Functionality from Untrusted Control Sphere | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| exim exim | < 4.99.5 |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Aug 17, 2026 | Initial Analysis | [email protected] |
| Jul 24, 2026 | CVE Modified | CISA-ADP |
| Jul 24, 2026 | New CVE Received | [email protected] |