Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local users to read or modify communications between Emacs and the subprocess.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gnu emacs 20.1 |
||
gnu emacs 20.5 |
||
gnu emacs 20.4 |
||
gnu emacs 20.6 |
||
gnu emacs 20.2 |
||
gnu emacs 20.3 |
||
gnu emacs 20.0 |