Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, related to image size calculation.
NASL family SuSE Local Security Checks
NASL id SUSE_EMACS-4190.NASL
description This update fixes a bug in parsing GIF images that lead to a crash of emacs. (CVE-2007-2833)
NASL family Debian Local Security Checks
NASL id DEBIAN_DSA-1316.NASL
description It has been discovered that emacs, the GNU Emacs editor, will crash when processing certain types of images.
NASL family Mandriva Local Security Checks
NASL id MANDRAKE_MDKSA-2007-133.NASL
description A vulnerability in emacs was discovered where it would crash when processing certain types of images. Updated packages have been patched to prevent this issue.

NASL family SuSE Local Security Checks
NASL id SUSE_EMACS-4197.NASL
description This update fixes a bug in parsing GIF images that lead to a crash of emacs. (CVE-2007-2833)

NASL family Ubuntu Local Security Checks
NASL id UBUNTU_USN-504-1.NASL
description Hendrik Tews discovered that emacs21 did not correctly handle certain GIF images. By tricking a user into opening a specially crafted GIF, a remote attacker could cause emacs21 to crash, resulting in a denial of service.
contributor | Mark J Cox |
lastmodified | 2007-06-26 |
organization | Red Hat |
statement | Red Hat does not consider a user-assisted crash of a user application such as Emacs to be a security issue. |