CVE-2012-0035

NameCVE-2012-0035
DescriptionUntrusted search path vulnerability in EDE in CEDET before 1.0.1, as used in GNU Emacs before 23.4 and other products, allows local users to gain privileges via a crafted Lisp expression in a Project.ede file in the directory, or a parent directory, of an opened file.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs655299, 655300

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
cedetsource(unstable)(unfixed)low655299
emacs23source(unstable)23.3+1-5low655300

Notes

[squeeze] - cedet <no-dsa> (Minor issue)
[squeeze] - emacs23 <no-dsa> (Minor issue)

Search for package or bug name: Reporting problems