Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-2142
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-2142

Description:
Emacs 21 and XEmacs automatically load and execute .flc (fast lock) files that are associated with other files that are edited within Emacs, which allows user-assisted attackers to execute arbitrary code.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/42362

SUSE
  http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00001.html

ST
  1020019

SAID
  Secunia Advisory: SA34004
  Secunia Advisory: SA30199
  Secunia Advisory: SA30216
  Secunia Advisory: SA30581
  Secunia Advisory: SA30303
  Secunia Advisory: SA30827

MLIST
  http://lists.gnu.org/archive/html/emacs-devel/2008-05/msg00645.html

MISC
  http://tracker.xemacs.org/XEmacs/its/issue378
  http://thread.gmane.org/gmane.emacs.devel/96903

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:154
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:153

GENTOO
  http://security.gentoo.org/glsa/glsa-200902-06.xml

FEDORA

CONFIRM
  http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0177

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/492657/100/0/threaded

BID
  29176


Return to the previous page.