Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-39331

Опубликовано: 23 июн. 2024
Источник: redhat
CVSS3: 7.8

Описание

In Emacs before 29.4, org-link-expand-abbrev in lisp/ol.el expands a %(...) link abbrev even when it specifies an unsafe function, such as shell-command-to-string. This affects Org Mode before 9.7.5.

A flaw was found in Emacs. Arbitrary shell commands can be executed without prompting when an Org mode file is opened or when the Org mode is enabled, when Emacs is used as an email client, this issue can be triggered when previewing email attachments.

Отчет

To exploit this flaw, an attacker needs to trick a user into opening a crafted Org mode file or previewing a crafted email attachment. For this reason, this flaw has been rated with a Moderate security impact.

Меры по смягчению последствий

Do not open Org mode files or preview email attachments from untrusted sources.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6emacsOut of support scope
Red Hat Enterprise Linux 7emacsOut of support scope
Red Hat Enterprise Linux 8emacsFixedRHSA-2024:698724.09.2024
Red Hat Enterprise Linux 8emacsFixedRHSA-2024:698724.09.2024
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportemacsFixedRHSA-2024:497101.08.2024
Red Hat Enterprise Linux 8.6 Telecommunications Update ServiceemacsFixedRHSA-2024:497101.08.2024
Red Hat Enterprise Linux 8.6 Update Services for SAP SolutionsemacsFixedRHSA-2024:497101.08.2024
Red Hat Enterprise Linux 8.8 Extended Update SupportemacsFixedRHSA-2024:620303.09.2024
Red Hat Enterprise Linux 9emacsFixedRHSA-2024:651009.09.2024

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-95
https://bugzilla.redhat.com/show_bug.cgi?id=2293942emacs: org-link-expand-abbrev: Do not evaluate arbitrary unsafe Elisp code

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
12 месяцев назад

In Emacs before 29.4, org-link-expand-abbrev in lisp/ol.el expands a %(...) link abbrev even when it specifies an unsafe function, such as shell-command-to-string. This affects Org Mode before 9.7.5.

CVSS3: 9.8
nvd
12 месяцев назад

In Emacs before 29.4, org-link-expand-abbrev in lisp/ol.el expands a %(...) link abbrev even when it specifies an unsafe function, such as shell-command-to-string. This affects Org Mode before 9.7.5.

CVSS3: 9.8
msrc
11 месяцев назад

Описание отсутствует

CVSS3: 9.8
debian
12 месяцев назад

In Emacs before 29.4, org-link-expand-abbrev in lisp/ol.el expands a % ...

suse-cvrf
11 месяцев назад

Security update for emacs

7.8 High

CVSS3