Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-96269

Опубликовано: 22 сент. 2026
Источник: redhat
CVSS3: 7.8
EPSS Низкий

Описание

A flaw was found in GNU Emacs. A remote attacker could achieve arbitrary code execution by tricking a user into opening a specially crafted file. This vulnerability arises because an untrusted value of read-symbol-shorthands affects the intern and unintern functions, allowing for code execution without specific user settings.

Меры по смягчению последствий

To mitigate this issue, users should avoid opening untrusted or suspicious files directly with GNU Emacs. Exercise caution when handling files from unknown sources or those with unexpected content, as opening them could lead to arbitrary code execution.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10emacsAffected
Red Hat Enterprise Linux 6emacsNot affected
Red Hat Enterprise Linux 7emacsNot affected
Red Hat Enterprise Linux 8emacsNot affected
Red Hat Enterprise Linux 9emacsNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-94
https://bugzilla.redhat.com/show_bug.cgi?id=2538925emacs: GNU Emacs: Arbitrary code execution upon opening a file

EPSS

Процентиль: 8%
0.00184
Низкий

7.8 High

CVSS3

Связанные уязвимости

nvd
1 день назад

GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symbol-shorthands affects the intern and unintern functions. This affects the default configuration; no particular user settings are required to trigger it.

msrc
около 13 часов назад

GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symbol-shorthands affects the intern and unintern functions. This affects the default configuration; no particular user settings are required to trigger it.

debian
1 день назад

[arbitrary code execution upon opening file]

github
1 день назад

GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symbol-shorthands affects the intern and unintern functions. This affects the default configuration; no particular user settings are required to trigger it.

EPSS

Процентиль: 8%
0.00184
Низкий

7.8 High

CVSS3