Описание
Security update for emacs
This update for emacs fixes the following issue:
- CVE-2026-6861: memory corruption when processing specially crafted SVG CSS data (bsc#1262611).
- Build with tree-sitter-0.26.8 security update (bsc#1262007).
Список пакетов
openSUSE Leap 16.0
emacs-30.2-160000.2.1
emacs-el-30.2-160000.2.1
emacs-eln-30.2-160000.2.1
emacs-games-30.2-160000.2.1
emacs-info-30.2-160000.2.1
emacs-nox-30.2-160000.2.1
emacs-x11-30.2-160000.2.1
etags-30.2-160000.2.1
Ссылки
- SUSE Security Ratings
- SUSE Bug 1262007
- SUSE Bug 1262611
- SUSE CVE CVE-2026-6861 page
Описание
A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure.
Затронутые продукты
openSUSE Leap 16.0:emacs-30.2-160000.2.1
openSUSE Leap 16.0:emacs-el-30.2-160000.2.1
openSUSE Leap 16.0:emacs-eln-30.2-160000.2.1
openSUSE Leap 16.0:emacs-games-30.2-160000.2.1
Ссылки
- CVE-2026-6861
- SUSE Bug 1262611