Back to Database
Status published
Low
CVE-2014-3423
lisp/net/browse-url.el in GNU Emacs 24.3 and earlier allows local users...
Vulnerability Description
lisp/net/browse-url.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a /tmp/Mosaic.##### temporary file.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-3423
Credits & Attribution
No credits recorded in the NVD database.
References
More from mageia project
View All →CVE-2015-2296
The resolve_redirects function in sessions.py in requests 2.1.0 through 2.5.3...
Medium
6.8
CVE-2014-9037
WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before 3.9.3, and...
Medium
6.8
CVE-2014-8764
DokuWiki 2014-05-05a and earlier, when using Active Directory for LDAP...
Medium
5
CVE-2014-3424
lisp/net/tramp-sh.el in GNU Emacs 24.3 and earlier allows local users...
Low
3.3
CVE-2014-3421
lisp/gnus/gnus-fun.el in GNU Emacs 24.3 and earlier allows local users...
Low
3.3
Affected Vendor
mageia project
View all reports →Affected Software
mageia, emacs
Vulnerable Versions:
3, 4, 0, 20.0, 20.1, 20.2, 20.3, 20.4, 20.5, 20.6, 20.7, 21, 21.1, 21.2, 21.2.1, 21.3, 21.3.1, 21.4, 22.1, 22.2, 22.3, 23.1, 23.2, 23.3, 23.4, 24.1, 24.2
Timeline
Official Publish:
May 8th, 2014
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.