CVE-2023-28617
19.03.2023, 03:15
org-babel-execute:latex in ob-latex.el in Org Mode through 9.6.1 for GNU Emacs allows attackers to execute arbitrary commands via a file name or directory name that contains shell metacharacters.
Vendor | Product | Version |
---|---|---|
gnu | org_mode | 𝑥 ≤ 9.6.1 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
emacs |
| ||||||||||||
org-mode |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
emacs |
| ||||||||||||||||||||
emacs23 |
| ||||||||||||||||||||
emacs24 |
| ||||||||||||||||||||
emacs25 |
| ||||||||||||||||||||
org-mode |
| ||||||||||||||||||||
xemacs21 |
| ||||||||||||||||||||
xemacs21-packages |
|
References