Search CVE reports


Toggle filters

1 – 10 of 34 results


CVE-2026-71394

Medium priority
Needs evaluation

GNU Emacs for Android improperly validates the table header input in sfnt_read_table_directory() in src/sfnt.c. Due to an incorrect comparison variable in the read-length check, a crafted font file that claims to contain more...

5 affected packages

emacs, xemacs21, xemacs21-packages, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
emacs Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs24 Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-71393

Medium priority
Needs evaluation

GNU Emacs for Android is vulnerable to an integer overflow in sfnt_read_name_table() in src/sfnt.c. The function computes an allocation size using a 32-bit length value from a TrueType font file without overflow checking. On...

5 affected packages

emacs, xemacs21, xemacs21-packages, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
emacs Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs24 Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-71392

Medium priority
Needs evaluation

GNU Emacs for Android is vulnerable to an integer overflow in the sfnt_read_cmap_format_12() function in src/sfnt.c. When processing a crafted TrueType font file, an unguarded addition in the xmalloc allocation call wraps around...

5 affected packages

emacs, xemacs21, xemacs21-packages, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
emacs Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs24 Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-71391

Medium priority
Needs evaluation

GNU Emacs for Android contains an off-by-one error in the gvar table parser in src/sfnt.c. The shared-coordinate index boundary check in sfnt_vary_simple_glyph() and sfnt_vary_compound_glyph() uses a strict greater-than comparison...

5 affected packages

emacs, xemacs21, xemacs21-packages, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
emacs Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs24 Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2026-6861

Medium priority
Needs evaluation

A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by...

5 affected packages

emacs, xemacs21, xemacs21-packages, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
emacs Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs24 Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2025-1244

Medium priority

Some fixes available 3 of 25

A command injection flaw was found in the text editor Emacs. It could allow a remote, unauthenticated attacker to execute arbitrary shell commands on a vulnerable system. Exploitation is possible by tricking users into visiting a...

5 affected packages

xemacs21, xemacs21-packages, emacs, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs Not affected Fixed Fixed Fixed
emacs24 Not in release Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2024-53920

Medium priority

Some fixes available 3 of 25

In elisp-mode.el in GNU Emacs before 30.1, a user who chooses to invoke elisp-completion-at-point (for code completion) on untrusted Emacs Lisp source code can trigger unsafe Lisp macro expansion that allows attackers to execute...

5 affected packages

xemacs21, xemacs21-packages, emacs, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs Not affected Fixed Fixed Fixed
emacs24 Not in release Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2024-39331

Medium priority

Some fixes available 10 of 32

In Emacs before 29.4, org-link-expand-abbrev in lisp/ol.el expands a %(...) link abbrev even when it specifies an unsafe function, such as shell-command-to-string. This affects Org Mode before 9.7.5.

6 affected packages

xemacs21, xemacs21-packages, emacs, emacs24, emacs25, org-mode

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs Not affected Fixed Fixed Fixed
emacs24 Not in release Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Not in release Fixed
org-mode Not affected Fixed Fixed Fixed Fixed
Show less packages

CVE-2024-30205

Medium priority

Some fixes available 8 of 30

In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.

6 affected packages

xemacs21, xemacs21-packages, emacs, emacs24, emacs25, org-mode

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs Not affected Not affected Fixed Fixed
emacs24 Not in release Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Not in release Fixed
org-mode Not affected Fixed Fixed Fixed Fixed
Show less packages

CVE-2024-30204

Medium priority

Some fixes available 4 of 25

In Emacs before 29.3, LaTeX preview is enabled by default for e-mail attachments.

5 affected packages

xemacs21, xemacs21-packages, emacs, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs Not affected Not affected Fixed Fixed
emacs24 Not in release Not in release Not in release Not in release
emacs25 Not in release Not in release Not in release Not in release Fixed
Show less packages