CyberRota Analysis
AI-GeneratedExim versions prior to 4.100.1 are vulnerable to a use-after-free issue when specific non-default TLS configurations are employed with GnuTLS. This vulnerability could potentially lead to application crashes or unexpected behavior, although it is classified as low severity. Organizations utilizing Exim with these TLS settings should prioritize patching to mitigate any associated risks.
CVE
CVE-2026-94055
Severity
LOW
CVSS
3.7
EPSS
0.29%
Original NVD Description
Exim before 4.100.1, when certain non-default TLS settings are used with GnuTLS, has a use-after-free.
Related CVEs
Other vulnerabilities affecting the same vendor(s)