Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
1.2
CVE-2001-1301
- EPSS 0.19%
- Published 07.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
rcs2log, as used in Emacs 20.4, xemacs 21.1.10 and other versions before 21.4, and possibly other packages, allows local users to modify files of other users via a symlink attack on a temporary file.
2.1
CVE-2000-0269
- EPSS 0.07%
- Published 18.04.2000 04:00:00
- Last modified 03.04.2025 01:03:51
Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local users to read or modify communications between Emacs and the subprocess.
4.6
CVE-2000-0271
- EPSS 0.07%
- Published 18.04.2000 04:00:00
- Last modified 03.04.2025 01:03:51
read-passwd and other Lisp functions in Emacs 20 do not properly clear the history of recently typed keys, which allows an attacker to read unencrypted passwords.
3.6
CVE-2000-0270
- EPSS 0.1%
- Published 18.04.2000 04:00:00
- Last modified 03.04.2025 01:03:51
The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names, which allows attackers to conduct a symlink attack.