CVE-2010-0825

Description

lib-src/movemail.c in movemail in emacs 22 and 23 allows local users to read, modify, or delete arbitrary mailbox files via a symlink attack, related to improper file-permission checks.

Risk Information

Base Score
7.1
MODERATE
Vector
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
EPSS Score
Exploitation Probability
0.118

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in GNU Emacs 22.1Windows
Multiple Vulnerabilities are affected in GNU Emacs 22.2Windows
Multiple Vulnerabilities are affected in GNU Emacs 22.3Windows
Multiple Vulnerabilities are affected in GNU Emacs 23.1Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234