Back to search
CVE-2008-3949
Published: Sep 22, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
emacs/lisp/progmodes/python.el in Emacs 22.1 and 22.2 imports Python script from the current working directory during editing of a Python file, which allows local users to execute arbitrary code via a Trojan horse Python file.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[emacs-devel] 20080905 Vulnerability in Emacs python integration
mailing-list
x_refsource_MLIST
31982
third-party-advisory
x_refsource_SECUNIA
emacs-python-code-execution(45021)
vdb-entry
x_refsource_XF
31052
vdb-entry
x_refsource_BID
https://bugzilla.novell.com/show_bug.cgi?id=424340
x_refsource_CONFIRM
SUSE-SR:2008:018
vendor-advisory
x_refsource_SUSE
GLSA-200902-06
vendor-advisory
x_refsource_GENTOO
MDVSA-2008:216
vendor-advisory
x_refsource_MANDRIVA
34004
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now