UbuntuUpdates.org

Package "emacs"

Name: emacs

Description:

The GNU Emacs editor (metapackage)

Latest version: 23.3+1-1ubuntu9.1
Release: precise (12.04)
Level: security
Repository: main
Head package: emacs23
Homepage: http://www.gnu.org/software/emacs/

Links


Download "emacs"


Other versions of "emacs" in Precise

Repository Area Version
base main 23.3+1-1ubuntu9
updates main 23.3+1-1ubuntu9.2

Changelog

Version: 23.3+1-1ubuntu9.1 2012-09-27 18:07:22 UTC

  emacs23 (23.3+1-1ubuntu9.1) precise-security; urgency=low

  * SECURITY UPDATE: untrusted search path vulnerability
    - debian/patches/CVE-2012-0035.patch: add new option and use it in
      lisp/cedet/ede/auto.el, lisp/cedet/ede.el, lisp/cedet/ede/simple.el.
    - CVE-2012-0035
  * SECURITY UPDATE: arbitrary lisp code execution via crafted file
    - debian/patches/CVE-2012-3479.patch: ignore eval: forms that are not
      known to be safe if enable-local-variables is set to :safe in
      lisp/files.el.
    - CVE-2012-3479
 -- Marc Deslauriers <email address hidden> Fri, 21 Sep 2012 10:57:56 -0400

CVE-2012-0035 Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as used in GNU Emacs before 23.4 and other products, allows local users to gain pri
CVE-2012-3479 lisp/files.el in Emacs 23.2, 23.3, 23.4, and 24.1 automatically executes eval forms in local-variable sections when the enable-local-variables option



About   -   Send Feedback to @ubuntu_updates