Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-6861

Опубликовано: 22 апр. 2026
Источник: debian
EPSS Низкий

Описание

A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
emacsfixed1:30.2+1-3package
emacsno-dsatrixiepackage
emacsno-dsabookwormpackage
emacspostponedbullseyepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2459992

  • https://debbugs.gnu.org/80851

  • Fixed by: https://cgit.git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-30&id=8f535370b9efbc91673b20c6987a5cae4f6dc562

EPSS

Процентиль: 1%
0.00108
Низкий

Связанные уязвимости

CVSS3: 6.1
ubuntu
3 месяца назад

A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure.

CVSS3: 6.1
redhat
3 месяца назад

A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure.

CVSS3: 6.1
nvd
3 месяца назад

A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure.

msrc
3 месяца назад

Emacs: emacs: memory corruption vulnerability when processing svg css

suse-cvrf
3 месяца назад

Security update for emacs

EPSS

Процентиль: 1%
0.00108
Низкий