CVE-2023-28617
19.03.2023, 03:15
org-babel-execute:latex in ob-latex.el in Org Mode through 9.6.1 for GNU Emacs allows attackers to execute arbitrary commands via a file name or directory name that contains shell metacharacters.
| Vendor | Product | Version |
|---|---|---|
| gnu | org_mode | 𝑥 ≤ 9.6.1 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| emacs |
| ||||||||||||
| org-mode |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| emacs |
| ||||||||||||||||||||
| emacs23 |
| ||||||||||||||||||||
| emacs24 |
| ||||||||||||||||||||
| emacs25 |
| ||||||||||||||||||||
| org-mode |
| ||||||||||||||||||||
| xemacs21 |
| ||||||||||||||||||||
| xemacs21-packages |
|
References