[Git][security-tracker-team/security-tracker][master] emacs DSA

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Aug 26 19:07:41 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
797874d1 by Moritz Mühlenhoff at 2026-08-26T20:06:36+02:00
emacs DSA

- - - - -


3 changed files:

- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -6458,6 +6458,7 @@ CVE-2026-79992 (A flaw was found in Emacs TRAMP. A local attacker could exploit
 	NOTE: Fixed by: https://cgit.git.savannah.gnu.org/cgit/emacs.git/commit/?id=f3e7104d05bdb8e32ba13bf75604108ad88536dc
 CVE-2026-XXXX [arbitrary code execution upon opening file]
 	- emacs 1:30.2+1-11
+	[trixie] - emacs 1:30.1+1-6+deb13u1
 	NOTE: https://www.openwall.com/lists/oss-security/2026/08/20/3
 	NOTE: https://eshelyaron.com/posts/2026-08-06-emacs-arbitrary-code-execution-returns.html
 	NOTE: https://debbugs.gnu.org/cgi/bugreport.cgi?bug=80574#227
@@ -107278,7 +107279,6 @@ CVE-2026-6862 (A flaw was found in libefiboot, a component of efivar. The device
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2459982
 CVE-2026-6861 (A flaw was found in GNU Emacs. This vulnerability, a memory corruption ...)
 	- emacs 1:30.2+1-3 (bug #1134692)
-	[trixie] - emacs <no-dsa> (Minor issue)
 	[bookworm] - emacs <no-dsa> (Minor issue)
 	[bullseye] - emacs <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2459992


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,6 @@
+[26 Aug 2026] DSA-6468-1 emacs - security update
+	{CVE-2026-6861}
+	[trixie] - emacs 1:30.1+1-6+deb13u1
 [26 Aug 2026] DSA-6467-1 freecad - security update
 	{CVE-2026-34398 CVE-2026-34399 CVE-2026-34789 CVE-2026-73233 CVE-2026-73234 CVE-2026-73235}
 	[trixie] - freecad 1.0.0+dfsg-8+deb13u3


=====================================
data/dsa-needed.txt
=====================================
@@ -36,8 +36,6 @@ cups
 --
 dulwich
 --
-emacs (jmm)
---
 firebird3.0
 --
 firebird4.0



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/797874d11508ef802e47d747b37212b437a7ed9c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/797874d11508ef802e47d747b37212b437a7ed9c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260826/ec7119ac/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list