ELSA-2024-9302

ELSA-2024-9302 - emacs security update

Type:SECURITY
Severity:MODERATE
Release Date:2024-11-14

Description


[1:27.2-10]
- Disable xwidgets (RHEL-14551)
- org-file-contents: Consider all remote files unsafe (CVE-2024-30205)
- Make Gnus treats inline MIME contents as untrusted (CVE-2024-30203)
- Add protection for LaTeX preview (CVE-2024-30204)
- org-link-expand-abbrev: Do not evaluate arbitrary unsafe Elisp code (CVE-2024-39331)


Related CVEs


CVE-2024-30204
CVE-2024-30205
CVE-2024-30203

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) emacs-27.2-10.el9.src.rpm6d9ce582a37776bccad8ee37064f2566-ol9_aarch64_appstream
emacs-27.2-10.el9.aarch64.rpmdeb78019c454e47e6a6f96c7ab35feaa-ol9_aarch64_appstream
emacs-common-27.2-10.el9.aarch64.rpm9d092b7ae9bb1325bdaf3720b0d4e1cb-ol9_aarch64_appstream
emacs-filesystem-27.2-10.el9.noarch.rpmf827181a9ef18799edff89923af07820-ol9_aarch64_appstream
emacs-lucid-27.2-10.el9.aarch64.rpm57dcda40ab2a20617f1a0d517bdcdd98-ol9_aarch64_appstream
emacs-nox-27.2-10.el9.aarch64.rpm520acee5182ce7e299481e3190ceed78-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) emacs-27.2-10.el9.src.rpm6d9ce582a37776bccad8ee37064f2566-ol9_x86_64_appstream
emacs-27.2-10.el9.x86_64.rpm62dbe2046c843320f917baf3e740b47d-ol9_x86_64_appstream
emacs-common-27.2-10.el9.x86_64.rpm1738888205b00ada5beae249715f67a1-ol9_x86_64_appstream
emacs-filesystem-27.2-10.el9.noarch.rpmf827181a9ef18799edff89923af07820-ol9_x86_64_appstream
emacs-lucid-27.2-10.el9.x86_64.rpmdda37ef12950f4ae772723b4a6d55837-ol9_x86_64_appstream
emacs-nox-27.2-10.el9.x86_64.rpm0bf4752e3eff33c3e14008f7430ba7fe-ol9_x86_64_appstream


This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections:

software.hardware.complete