Mandriva Linux Security Advisory : emacs (MDVSA-2008:034)
Critical Nessus Plugin ID 36420
SynopsisThe remote Mandriva Linux host is missing one or more security updates.
DescriptionThe hack-local-variable function in Emacs 22 prior to version 22.2, when enable-local-variables is set to ':safe', did not properly search lists of unsafe or risky variables, which could allow user-assisted attackers to bypass intended restrictions and modify critical program variables via a file containing a Local variables declaration (CVE-2007-5795; only affects Mandriva Linux 2008.0).
A stack-based buffer overflow in emacs could allow user-assisted attackers to cause an application crash or possibly have other unspecified impacts via a large precision value in an integer format string specifier to the format function (CVE-2007-6109).
The updated packages have been patched to correct these issues.
SolutionUpdate the affected packages.