PT-2024-23251 · Emacs+5 · Emacs+5

Ihor Radchenko

·

Published

2024-03-25

·

Updated

2025-05-01

·

CVE-2024-30202

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Emacs versions prior to 29.3 Org Mode versions prior to 9.6.23
Description The issue allows arbitrary Lisp code to be evaluated as part of turning on Org mode.
Recommendations For Emacs versions prior to 29.3, update to version 29.3 or later. For Org Mode versions prior to 9.6.23, update to version 9.6.23 or later.

Fix

Code Injection

Weakness Enumeration

Related Identifiers

AZL-37082
AZL-37105
CVE-2024-30202
MGASA-2024-0104
USN-7375-1

Affected Products

Astra Linux
Debian
Emacs
Linuxmint
Org Mode
Ubuntu