Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-29x7-3q83-3x3v

Опубликовано: 22 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.5

Описание

GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symbol-shorthands affects the intern and unintern functions. This affects the default configuration; no particular user settings are required to trigger it.

GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symbol-shorthands affects the intern and unintern functions. This affects the default configuration; no particular user settings are required to trigger it.

EPSS

Процентиль: 8%
0.00184
Низкий

7.5 High

CVSS4

Дефекты

CWE-829

Связанные уязвимости

CVSS3: 7.8
redhat
2 дня назад

A flaw was found in GNU Emacs. A remote attacker could achieve arbitrary code execution by tricking a user into opening a specially crafted file. This vulnerability arises because an untrusted value of read-symbol-shorthands affects the intern and unintern functions, allowing for code execution without specific user settings.

nvd
1 день назад

GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symbol-shorthands affects the intern and unintern functions. This affects the default configuration; no particular user settings are required to trigger it.

msrc
около 13 часов назад

GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symbol-shorthands affects the intern and unintern functions. This affects the default configuration; no particular user settings are required to trigger it.

debian
1 день назад

[arbitrary code execution upon opening file]

EPSS

Процентиль: 8%
0.00184
Низкий

7.5 High

CVSS4

Дефекты

CWE-829