PT-2024-23252 · Emacs+9 · Emacs+9
Published
2024-03-25
·
Updated
2025-08-03
·
CVE-2024-30203
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Emacs versions prior to 29.3
Description
The issue concerns how Gnus in Emacs handles inline MIME contents, treating them as trusted. This could potentially lead to security issues, although specific details about exploitation or affected devices are not provided.
Recommendations
For versions prior to 29.3, update to version 29.3 or later to resolve the issue. As a temporary workaround, consider restricting the use of Gnus for handling inline MIME contents until the update is applied.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Almalinux
Astra Linux
Centos
Debian
Emacs
Linuxmint
Red Hat
Rocky Linux
Suse
Ubuntu