CVE-2012-0035
Description
Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as used in GNU Emacs before 23.4 and other products, allows local users to gain privileges via a crafted Lisp expression in a Project.ede file in the directory, or a parent directory, of an opened file.
Risk Information
Base Score
7.8
MODERATE
Vector
AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
4.03
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Multiple Vulnerabilities are affected in GNU Emacs 20.0 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 20.1 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 20.2 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 20.3 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 20.4 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 20.5 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 20.6 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 21.2.1 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 21.3 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 21 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 22.1 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 20.7 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 21.1 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 21.2 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 21.4 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 21.3.1 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 22.2 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 22.3 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 23.1 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 23.2 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 23.3 | Windows |
| Multiple Vulnerabilities are affected in GNU Emacs 23.4 | Windows |
| The GNU Emacs editor (with GTK+ user interface) (USN-1586-1) emacs23_23.3+1-1ubuntu9.1_i386.deb | Linux |
| The GNU Emacs editor (with GTK+ user interface) (USN-1586-1) emacs23_23.3+1-1ubuntu9.1_amd64.deb | Linux |
| The GNU Emacs editor (with GTK+ user interface) (USN-1586-1) emacs23-common_23.3+1-1ubuntu9.1_all.deb | Linux |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234