CVE-2007-2833
published 2007-06-21CVE-2007-2833: Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, related to…
PriorityP423high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
1.96%
78.3th percentile
Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, related to image size calculation.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| gnu | emacs | — | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Emacs vulnerability
vendor_ubuntu·2007-08-28
CVE-2007-2833 Emacs vulnerability
Title: Emacs vulnerability
Summary: Emacs vulnerability
Hendrik Tews discovered that emacs21 did not correctly handle certain
GIF images. By tricking a user into opening a specially crafted GIF,
a remote attacker could cause emacs21 to crash, resulting in a denial
of service.
Instructions: After a standard system upgrade you need to restart emacs to effect the
necessary changes.
Red Hat
CVE-2007-2833: Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, r
vendor_redhat·CVSS 7.8
CVE-2007-2833 [HIGH] CVE-2007-2833: Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, r
Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, related to image size calculation.
Statement: Red Hat does not consider a user-assisted crash of a user application such as Emacs to be a security issue.
GHSA
GHSA-87rf-xcxq-w82r: Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, r
ghsa_unreviewed·2022-05-01
CVE-2007-2833 [HIGH] GHSA-87rf-xcxq-w82r: Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, r
Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, related to image size calculation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=408929http://secunia.com/advisories/26987http://www.debian.org/security/2007/dsa-1316http://www.mandriva.com/security/advisories?name=MDKSA-2007:133http://www.novell.com/linux/security/advisories/2007_19_sr.htmlhttp://www.securityfocus.com/bid/24570http://www.securitytracker.com/id?1018277http://www.ubuntu.com/usn/usn-504-1https://issues.rpath.com/browse/RPL-1490http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=408929http://secunia.com/advisories/26987http://www.debian.org/security/2007/dsa-1316http://www.mandriva.com/security/advisories?name=MDKSA-2007:133http://www.novell.com/linux/security/advisories/2007_19_sr.htmlhttp://www.securityfocus.com/bid/24570http://www.securitytracker.com/id?1018277http://www.ubuntu.com/usn/usn-504-1https://issues.rpath.com/browse/RPL-1490
2007-06-21
Published