← Back

CVE-2014-3422

nvd nist
Published: May 8, 2014Modified: May 6, 2026

JSON object

Loading...
3.3
Vector
AV:L/AC:M/Au:N/C:N/I:P/A:P
Exploitability: 3.4 / Impact: 4.9
Source: NVD

Description

lisp/emacs-lisp/find-gc.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file under /tmp/esrc/.

Affected (27)

1 product
Emacs
Mageia
Configuration A
25 vulnerable
Vulnerable SoftwareAffected Versions
Gnu
Up to 24.3
Version 20.0
Version 20.1
Version 20.2
Version 20.3
Version 20.4
Version 20.5
Version 20.6
Version 20.7
Version 21.1
Version 21.2.1
Version 21.2
Version 21.3.1
Version 21.3
Version 21.4
Version 21
Version 22.1
Version 22.2
Version 22.3
Version 23.1
Version 23.2
Version 23.3
Version 23.4
Version 24.1
Version 24.2
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Mageia Project
Version 3
Version 4

Timeline

No history available yet.