Exim security advisory (AV26-944)
Canada's Cyber Centre warns Exim versions before 4.100.1 are vulnerable and urges administrators to update.
The Canadian Centre for Cyber Security issued advisory AV26-944 on 21 September 2026, stating that as of 18 September 2026 Exim versions before 4.100.1 are affected by vulnerabilities. The notice points administrators to Exim's 4.100.1 security release and urges them to apply available updates. It does not name CVE identifiers, describe the flaws, or say whether exploitation has been observed.
- Advisory AV26-944 covers Exim versions before 4.100.1.
- The Cyber Centre says Exim was affected as of 18 September 2026.
- Administrators are told to review the 4.100.1 security release and update.
- The bulletin lists no CVE identifiers and does not confirm exploitation.
Full article55 words · extracted from cyber.gc.ca · click to collapse
Serial number: AV26-944
Date: September 21, 2026
As of September 18, 2026, Exim is affected by vulnerabilities in the following product:
- Exim
- Prior to 4.100.1
The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyber.gc.ca/en/alerts-advisories/exim-security-advisory-av26-944