Two security vulnerabilities were discovered in Emacs:
CVE-2024-53920
Elisp byte-compilation ('elisp-flymake-byte-compile') in the Flymake mode is now disabled for untrusted files.
CVE-2025-1244
An incomplete escaping of shell meta characters in the man reader component could potentially result in the execution of arbitrary shell commands. Discovered by Maxim Nikulin.
https://security-tracker.debian.org/tracker/DSA-5871-1
Continue reading...
CVE-2024-53920
Elisp byte-compilation ('elisp-flymake-byte-compile') in the Flymake mode is now disabled for untrusted files.
CVE-2025-1244
An incomplete escaping of shell meta characters in the man reader component could potentially result in the execution of arbitrary shell commands. Discovered by Maxim Nikulin.
https://security-tracker.debian.org/tracker/DSA-5871-1
Continue reading...

