Several memory leak flaws were found in Exim. A local attacker who has access to run the exim binary could use this flaw to escalate his privilege to root.
Created attachment 1284052 [details] Upstream proposed patch
Upstream commit: https://github.com/Exim/exim/commit/65e061b76867a9ea7aeeb535341b790b90ae6c21
Statement: Exim itself is not vulnerable to privilege escalation, but this particular flaw in exim can be used by the stackguard vulnerability (https://access.redhat.com/security/vulnerabilities/stackguard) to achieve privilege escalation.
Created exim tracking bugs for this issue: Affects: fedora-all [bug 1463539] Affects: epel-6 [bug 1463540] Affects: epel-7 [bug 1463541]