[Git][security-tracker-team/security-tracker][master] emacs DSA

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Feb 27 21:20:36 GMT 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ae6a8b88 by Moritz Mühlenhoff at 2025-02-27T22:18:54+01:00
emacs DSA

- - - - -


3 changed files:

- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -28123,7 +28123,6 @@ CVE-2024-11738 (A flaw was found in Rustls 0.23.13 and related APIs. This vulner
 CVE-2024-53920 (In elisp-mode.el in GNU Emacs through 30.0.92, a user who chooses to i ...)
 	{DLA-4069-1}
 	- emacs 1:30.1+1-1 (bug #1088690)
-	[bookworm] - emacs <postponed> (Minor issue, revisit when fixed upstream)
 	NOTE: https://eshelyaron.com/posts/2024-11-27-emacs-aritrary-code-execution-and-how-to-avoid-it.html
 	NOTE: https://yhetil.org/emacs/CAFXAjY5f4YfHAtZur1RAqH34UbYU56_t6t2Er0YEh1Sb7-W=hg%40mail.gmail.com/
 CVE-2024-53855 (Centurion ERP (Enterprise Rescource Planning) is a simple application  ...)


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,6 @@
+[27 Feb 2025] DSA-5871-1 emacs - security update
+	{CVE-2024-53920 CVE-2025-1244}
+	[bookworm] - emacs 1:28.2+1-15+deb12u4
 [26 Feb 2025] DSA-5870-1 openh264 - security update
 	{CVE-2025-27091}
 	[bookworm] - openh264 2.3.1+dfsg-3+deb12u1


=====================================
data/dsa-needed.txt
=====================================
@@ -11,8 +11,6 @@ To pick an issue, simply add your uid behind it.
 
 If needed, specify the release by adding a slash after the name of the source package.
 
---
-emacs (jmm)
 --
 frr
   coordination with the maintainer ongoing, Daniel Baumann proposing an update



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ae6a8b88472ddc0ec54050b7d81aaa6c6dc9ea78

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ae6a8b88472ddc0ec54050b7d81aaa6c6dc9ea78
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250227/2f15c7ab/attachment.htm>


More information about the debian-security-tracker-commits mailing list