Name | CVE-2012-0035 |
Description | Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as used in GNU Emacs before 23.4 and other products, allows local users to gain privileges via a crafted Lisp expression in a Project.ede file in the directory, or a parent directory, of an opened file. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
Debian Bugs | 655299, 655300 |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
cedet | source | (unstable) | (unfixed) | low | 655299 | |
emacs23 | source | (unstable) | 23.3+1-5 | low | 655300 |
[squeeze] - cedet <no-dsa> (Minor issue)
[squeeze] - emacs23 <no-dsa> (Minor issue)