CVE Vulnerabilities

CVE-2010-0825

Published: Apr 05, 2010 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.4 MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

lib-src/movemail.c in movemail in emacs 22 and 23 allows local users to read, modify, or delete arbitrary mailbox files via a symlink attack, related to improper file-permission checks.

Affected Software

Name Vendor Start Version End Version
Emacs Gnu 22.1 22.1
Emacs Gnu 23.1 23.1
Emacs Gnu 22.3 22.3
Emacs Gnu 22.2 22.2

References