Red Hat Enterprise Linux 7 Extended Lifecycle Support vulnerability

A command injection flaw was found in the text editor Emacs. It could allow a remote, unauthenticated attacker to execute arbitrary shell commands on a vulnerable system. Exploitation is possible by tricking users into visiting a specially crafted website or an HTTP URL with a redirect.

Published 12 Feb 2025Updated 6 Sep 202618 sources
CVSS 8.8

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.