Description
Emacs 21 and XEmacs automatically load and execute .flc (fast lock) files that are associated with other files that are edited within Emacs, which allows user-assisted attackers to execute arbitrary code.
CVSS vector
AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4 Affected Packages2 packages
🔴Vulnerability Details
3GHSAGHSA-6hwc-q43w-j73j: Emacs 21 and XEmacs automatically load and execute↗2022-05-01 ▶ OSVCVE-2008-2142: Emacs 21 and XEmacs automatically load and execute↗2008-05-12 ▶ CVEListCVE-2008-2142: Emacs 21 and XEmacs automatically load and execute↗2008-05-12 ▶ 📋Vendor Advisories
2Red Hatemacs: fast-lock-mode arbitrary lisp code execution↗2008-05-09 ▶ DebianCVE-2008-2142: xemacs21-packages - Emacs 21 and XEmacs automatically load and execute .flc (fast lock) files that a...↗2008 ▶ 💬Community
1BugzillaCVE-2008-2142 emacs: fast-lock-mode arbitrary lisp code execution↗2008-05-12 ▶