Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2026:21711-1

Опубликовано: 31 авг. 2026
Источник: suse-cvrf

Описание

Security update for emacs

This update for emacs fixes the following issues:

Security issues fixed:

  • Arbitrary code execution when opening a specially crafted file (bsc#1275941).
  • CVE-2026-77219: integer overflow in the PBM/PPM/PGM image loader leads to heap memory content leaks when a crafted image with large dimensions and an elevated max color index is processed (bsc#1276264).
  • CVE-2026-79992: improper argument sanitization in TRAMP leads to arbitrary code execution via crafted filenames (bsc#1275927).

Other updates and bugfixes:

  • Fix memory leak in wayland port (bsc#1271643).

Список пакетов

openSUSE Leap 16.0
emacs-30.2-160000.3.1
emacs-el-30.2-160000.3.1
emacs-eln-30.2-160000.3.1
emacs-games-30.2-160000.3.1
emacs-info-30.2-160000.3.1
emacs-nox-30.2-160000.3.1
emacs-x11-30.2-160000.3.1
etags-30.2-160000.3.1

Описание

GNU Emacs before 31.0.91 contains an integer overflow in the PBM/PPM/PGM image loader that allows an attacker to leak heap memory contents by supplying a crafted image with large dimensions and an elevated max color index. The image loader multiplies image dimensions and channel count using signed integer arithmetic; for sufficiently large values, the result wraps to a negative number, bypassing the bounds check and causing the pixel reader to access heap memory past the end of the allocated buffer. The over-read contents are interpreted as pixel color values and rendered on screen.


Затронутые продукты
openSUSE Leap 16.0:emacs-30.2-160000.3.1
openSUSE Leap 16.0:emacs-el-30.2-160000.3.1
openSUSE Leap 16.0:emacs-eln-30.2-160000.3.1
openSUSE Leap 16.0:emacs-games-30.2-160000.3.1

Ссылки

Описание

A flaw was found in Emacs TRAMP. A local attacker could exploit this vulnerability by processing maliciously crafted filenames. This occurs because TRAMP concatenates login arguments without proper sanitization, which are then passed to a local shell. Successful exploitation could lead to arbitrary code execution.


Затронутые продукты
openSUSE Leap 16.0:emacs-30.2-160000.3.1
openSUSE Leap 16.0:emacs-el-30.2-160000.3.1
openSUSE Leap 16.0:emacs-eln-30.2-160000.3.1
openSUSE Leap 16.0:emacs-games-30.2-160000.3.1

Ссылки