Known Vulnerabilities for Emacs by Gnu
Listed below are 10 of the newest known vulnerabilities associated with "Emacs" by "Gnu".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-1000383 | GNU Emacs version 25.3.1 (and other versions most likely) ignores umask when creating a backup save file ("[ORIGINAL_FILENAME... | 5.5 - MEDIUM | 2017-10-31 | 2017-11-27 |
| CVE-2017-14482 | GNU Emacs before 25.3 allows remote attackers to execute arbitrary code via email with crafted "Content-Type: text/enriched" ... | 8.8 - HIGH | 2017-09-14 | 2019-10-03 |
| CVE-2014-9483 | Emacs 24.4 allows remote attackers to bypass security restrictions. | 7.5 - HIGH | 2017-08-28 | 2017-09-08 |
| CVE-2014-3424 | lisp/net/tramp-sh.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a ... | 3.3 - LOW | 2014-05-08 | 2016-06-30 |
| CVE-2014-3423 | lisp/net/browse-url.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on ... | 3.3 - LOW | 2014-05-08 | 2016-06-30 |
| CVE-2014-3422 | lisp/emacs-lisp/find-gc.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack... | 3.3 - LOW | 2014-05-08 | 2016-06-30 |
| CVE-2014-3421 | lisp/gnus/gnus-fun.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on t... | 3.3 - LOW | 2014-05-08 | 2016-06-30 |
| CVE-2012-3479 | lisp/files.el in Emacs 23.2, 23.3, 23.4, and 24.1 automatically executes eval forms in local-variable sections when the enabl... | 6.8 - MEDIUM | 2012-08-25 | 2013-12-13 |
| CVE-2012-1103 | emacs/notmuch-mua.el in Notmuch before 0.11.1, when using the Emacs interface, allows user-assisted remote attackers to read ... | 4.3 - MEDIUM | 2012-09-25 | 2012-09-26 |
| CVE-2012-0035 | Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as used in GNU Emacs before 23.4 and other products, allows... | 9.3 - HIGH | 2012-01-19 | 2018-12-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnu | Emacs | 26.3 | All | All | All |
| Application | Gnu | Emacs | 26.2 | All | All | All |
| Application | Gnu | Emacs | 26.1 | All | All | All |
| Application | Gnu | Emacs | 25.3 | All | All | All |
| Application | Gnu | Emacs | 25.2 | All | All | All |
| Application | Gnu | Emacs | 25.1 | All | All | All |
| Application | Gnu | Emacs | 24.5 | All | All | All |
| Application | Gnu | Emacs | 24.4 | All | All | All |
| Application | Gnu | Emacs | 24.3 | All | All | All |
| Application | Gnu | Emacs | 24.2 | All | All | All |
| Application | Gnu | Emacs | 24.1 | All | All | All |
| Application | Gnu | Emacs | 23.4 | All | All | All |
| Application | Gnu | Emacs | 23.3b | All | All | All |
| Application | Gnu | Emacs | 23.3 | All | All | All |
| Application | Gnu | Emacs | 23.2b | All | All | All |
| Application | Gnu | Emacs | 23.2 | All | All | All |
| Application | Gnu | Emacs | 23.1 | All | All | All |
| Application | Gnu | Emacs | 22.3 | All | All | All |
| Application | Gnu | Emacs | 22.2 | All | All | All |
| Application | Gnu | Emacs | 22.1 | All | All | All |