Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-30205

Опубликовано: 25 мар. 2024
Источник: debian

Описание

In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
emacsfixed1:29.3+1-1package
emacsfixed1:28.2+1-15+deb12u1bookwormpackage
emacsfixed1:27.1+1-3.1+deb11u3bullseyepackage
org-modefixed9.6.23+dfsg-1package
org-modeignoredbookwormpackage
org-modefixed9.4.0+dfsg-1+deb11u2bullseyepackage

Примечания

  • https://www.openwall.com/lists/oss-security/2024/03/24/1

  • https://lists.gnu.org/archive/html/info-gnu/2024-03/msg00005.html

  • https://git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-29&id=2bc865ace050ff118db43f01457f95f95112b877 (emacs-29.3)

  • https://list.orgmode.org/87o7b3eczr.fsf@bzg.fr/T/#t

  • https://git.savannah.gnu.org/cgit/emacs/org-mode.git/commit/?id=4255d5dcc0657915f90e4fba7e0a5514cced514d (release_9.6.23)

Связанные уязвимости

CVSS3: 7.1
ubuntu
около 1 года назад

In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.

CVSS3: 7.8
redhat
около 1 года назад

In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.

CVSS3: 7.1
nvd
около 1 года назад

In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.

CVSS3: 7.1
msrc
12 месяцев назад

Описание отсутствует

CVSS3: 7.1
github
около 1 года назад

In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.