Description
Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, related to image size calculation.
References (9)
Core 9
Core References
Third Party Advisory vendor-advisory
x_refsource_debian
http://www.debian.org/security/2007/dsa-1316
Vendor Advisory vendor-advisory
x_refsource_suse
http://www.novell.com/linux/security/advisories/2007_19_sr.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1018277
Issue Tracking x_refsource_confirm
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=408929
Vendor Advisory vendor-advisory
x_refsource_ubuntu
http://www.ubuntu.com/usn/usn-504-1
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/24570
Vendor Advisory vendor-advisory
x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDKSA-2007:133
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/26987
Issue Tracking x_refsource_confirm
https://issues.rpath.com/browse/RPL-1490
Scores
EPSS
0.0139
EPSS Percentile
80.6%
Details
Status
published
Products (2)
debian/debian_linux
4.0 (12 CPE variants)
gnu/emacs
21
Published
Jun 21, 2007
Tracked Since
Feb 18, 2026