A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure.
A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Emacs | Gnu | 28.1 (including) | 30.2 (including) |
| Emacs | Ubuntu | questing | * |
| Emacs24 | Ubuntu | esm-infra/xenial | * |
| Xemacs21 | Ubuntu | esm-apps/xenial | * |
| Xemacs21 | Ubuntu | questing | * |
| Xemacs21 | Ubuntu | upstream | * |
| Xemacs21-packages | Ubuntu | esm-apps/xenial | * |
| Xemacs21-packages | Ubuntu | questing | * |