Description
Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as used in GNU Emacs before 23.4 and other products, allows local users to gain privileges via a crafted Lisp expression in a Project.ede file in the directory, or a parent directory, of an opened file.
Affected products
- eric_m_ludlam / cedet1.0
- eric_m_ludlam / cedet1.0 – 1.0
- eric_m_ludlam / cedet1.0 – 1.0
- eric_m_ludlam / cedet1.0 – 1.0
- eric_m_ludlam / cedet1.0 – 1.0
- eric_m_ludlam / cedet1.0 – 1.0
- eric_m_ludlam / cedet1.0 – 1.0
- eric_m_ludlam / cedet1.0 – 1.0
- eric_m_ludlam / cedet1.0 – 1.0
- eric_m_ludlam / cedet1.0 – 1.0
- gnu / emacs23.3
- gnu / emacs20.0 – 20.0
- gnu / emacs20.1 – 20.1
- gnu / emacs20.2 – 20.2
- gnu / emacs20.3 – 20.3
- gnu / emacs20.4 – 20.4
- gnu / emacs20.5 – 20.5
- gnu / emacs20.6 – 20.6
- gnu / emacs20.7 – 20.7
- gnu / emacs21 – 21
- gnu / emacs21.1 – 21.1
- gnu / emacs21.2 – 21.2
- gnu / emacs21.2.1 – 21.2.1
- gnu / emacs21.3 – 21.3
- gnu / emacs21.3.1 – 21.3.1
- gnu / emacs21.4 – 21.4
- gnu / emacs22.1 – 22.1
- gnu / emacs22.2 – 22.2
- gnu / emacs22.3 – 22.3
- gnu / emacs23.1 – 23.1
- gnu / emacs23.2 – 23.2
- gnu / emacs23.4 – 23.4
References
- MAILING_LISThttp://openwall.com/lists/oss-security/2012/01/10/2
- MISChttp://sourceforge.net/mailarchive/message.php?msg_id=28657612
- VENDOR_ADVISORYhttp://secunia.com/advisories/47311
- VENDOR_ADVISORYhttp://secunia.com/advisories/50801
- MAILING_LISThttp://openwall.com/lists/oss-security/2012/01/10/4
- VENDOR_ADVISORYhttp://secunia.com/advisories/47515
- MISChttp://sourceforge.net/mailarchive/message.php?msg_id=28649762
- VENDOR_ADVISORYhttp://www.ubuntu.com/usn/USN-1586-1
- VENDOR_ADVISORYhttp://www.mandriva.com/security/advisories?name=MDVSA-2013:076
- MAILING_LISThttp://lists.fedoraproject.org/pipermail/package-announce/2012-January/072285.html
- MAILING_LISThttp://lists.fedoraproject.org/pipermail/package-announce/2012-January/072288.html
- MISChttps://security.gentoo.org/glsa/201812-05
- MAILING_LISThttp://lists.gnu.org/archive/html/emacs-devel/2012-01/msg00387.html