Logo
vulnerabilityCVE-2024-39331
Name
CVE-2024-39331
Source
NVD ( link)Debian ( link)
Description
In Emacs before 29.4, org-link-expand-abbrev in lisp/ol.el expands a %(...) link abbrev even when it specifies an unsafe function, such as shell-command-to-string. This affects Org Mode before 9.7.5.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
emacs
Exploitable

Vulnerability Ratings#


9.8
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
30.2
Not Affected
yocto
scarthgap
29.1
Exploitable