[Git][security-tracker-team/security-tracker][master] emacs DSA
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Wed Aug 26 19:07:41 BST 2026
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
797874d1 by Moritz Mühlenhoff at 2026-08-26T20:06:36+02:00
emacs DSA
- - - - -
3 changed files:
- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -6458,6 +6458,7 @@ CVE-2026-79992 (A flaw was found in Emacs TRAMP. A local attacker could exploit
NOTE: Fixed by: https://cgit.git.savannah.gnu.org/cgit/emacs.git/commit/?id=f3e7104d05bdb8e32ba13bf75604108ad88536dc
CVE-2026-XXXX [arbitrary code execution upon opening file]
- emacs 1:30.2+1-11
+ [trixie] - emacs 1:30.1+1-6+deb13u1
NOTE: https://www.openwall.com/lists/oss-security/2026/08/20/3
NOTE: https://eshelyaron.com/posts/2026-08-06-emacs-arbitrary-code-execution-returns.html
NOTE: https://debbugs.gnu.org/cgi/bugreport.cgi?bug=80574#227
@@ -107278,7 +107279,6 @@ CVE-2026-6862 (A flaw was found in libefiboot, a component of efivar. The device
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2459982
CVE-2026-6861 (A flaw was found in GNU Emacs. This vulnerability, a memory corruption ...)
- emacs 1:30.2+1-3 (bug #1134692)
- [trixie] - emacs <no-dsa> (Minor issue)
[bookworm] - emacs <no-dsa> (Minor issue)
[bullseye] - emacs <postponed> (Minor issue; can be fixed in next update)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2459992
=====================================
data/DSA/list
=====================================
@@ -1,3 +1,6 @@
+[26 Aug 2026] DSA-6468-1 emacs - security update
+ {CVE-2026-6861}
+ [trixie] - emacs 1:30.1+1-6+deb13u1
[26 Aug 2026] DSA-6467-1 freecad - security update
{CVE-2026-34398 CVE-2026-34399 CVE-2026-34789 CVE-2026-73233 CVE-2026-73234 CVE-2026-73235}
[trixie] - freecad 1.0.0+dfsg-8+deb13u3
=====================================
data/dsa-needed.txt
=====================================
@@ -36,8 +36,6 @@ cups
--
dulwich
--
-emacs (jmm)
---
firebird3.0
--
firebird4.0
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/797874d11508ef802e47d747b37212b437a7ed9c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/797874d11508ef802e47d747b37212b437a7ed9c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260826/ec7119ac/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list