Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
65cfb058 by Salvatore Bonaccorso at 2023-03-09T07:41:12+01:00
Two CVEs assigned for emacs issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -104,14 +104,14 @@ CVE-2023-1268
        RESERVED
 CVE-2023-1267 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
        NOT-FOR-US: Ulkem Company PtteM Kart
-CVE-2023-XXXX [emacsclient-mail.desktop Emacs Lisp code injection]
+CVE-2023-27986 [emacsclient-mail.desktop Emacs Lisp code injection]
        - emacs <unfixed> (bug #1032538)
        [bullseye] - emacs <not-affected> (Vulnerable code not present, 
introduced in 28.1)
        [buster] - emacs <not-affected> (Vulnerable code not present, 
introduced in 28.1)
        NOTE: https://www.openwall.com/lists/oss-security/2023/03/08/2
        NOTE: Introduced by: 
http://git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-29&id=b1b05c828d67930bb3b897fe98e1992db42cf23c
 (emacs-28.0.90)
        NOTE: Fixed by: 
http://git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-29&id=3c1693d08b0a71d40a77e7b40c0ebc42dca2d2cc
-CVE-2023-XXXX [emacsclient-mail.desktop shell command injection]
+CVE-2023-27985 [emacsclient-mail.desktop shell command injection]
        - emacs <unfixed> (bug #1032538)
        [bullseye] - emacs <not-affected> (Vulnerable code not present, 
introduced in 28.1)
        [buster] - emacs <not-affected> (Vulnerable code not present, 
introduced in 28.1)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/65cfb058f1366600b76a51acecf9ea2a28b895c8

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/65cfb058f1366600b76a51acecf9ea2a28b895c8
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to