CVE-2012-0035
19.01.2012, 15:55
Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as used in GNU Emacs before 23.4 and other products, allows local users to gain privileges via a crafted Lisp expression in a Project.ede file in the directory, or a parent directory, of an opened file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| eric_m_ludlam | cedet | 𝑥 ≤ 1.0 |
| eric_m_ludlam | cedet | 1.0:beta1 |
| eric_m_ludlam | cedet | 1.0:beta2 |
| eric_m_ludlam | cedet | 1.0:beta3 |
| eric_m_ludlam | cedet | 1.0:pre1 |
| eric_m_ludlam | cedet | 1.0:pre2 |
| eric_m_ludlam | cedet | 1.0:pre3 |
| eric_m_ludlam | cedet | 1.0:pre4 |
| eric_m_ludlam | cedet | 1.0:pre6 |
| eric_m_ludlam | cedet | 1.0:pre7 |
| gnu | emacs | 𝑥 ≤ 23.3 |
| gnu | emacs | 20.0 |
| gnu | emacs | 20.1 |
| gnu | emacs | 20.2 |
| gnu | emacs | 20.3 |
| gnu | emacs | 20.4 |
| gnu | emacs | 20.5 |
| gnu | emacs | 20.6 |
| gnu | emacs | 20.7 |
| gnu | emacs | 21.1 |
| gnu | emacs | 21.2 |
| gnu | emacs | 21.2.1 |
| gnu | emacs | 21.3 |
| gnu | emacs | 21.3.1 |
| gnu | emacs | 21.4 |
| gnu | emacs | 22.1 |
| gnu | emacs | 22.2 |
| gnu | emacs | 22.3 |
| gnu | emacs | 23.1 |
| gnu | emacs | 23.2 |
| gnu | emacs | 23.4 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cedet |
| ||||||||||||||||||
| emacs22 |
| ||||||||||||||||||
| emacs23 |
|
References