CVE-2023-27986: Code Injection
emacsclient-mail.desktop in Emacs 28.1 through 28.2 is vulnerable to Emacs Lisp code injections through a crafted mailto: URI with unescaped double-quote characters. It is fixed in 29.0.90.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-27986?
CVE-2023-27986 is a vulnerability in Emacs 28.1 through 28.2 that allows Emacs Lisp code injections through a crafted mailto: URI with unescaped double-quote characters.
How can attackers exploit CVE-2023-27986?
Attackers can exploit CVE-2023-27986 by sending a malicious mailto: URI with unescaped double-quote characters, which can execute arbitrary Emacs Lisp code.
What is the severity of CVE-2023-27986?
CVE-2023-27986 has a severity rating of high, with a CVSS severity value of 7.8.
How can I fix CVE-2023-27986?
You can fix CVE-2023-27986 by updating Emacs to version 29.0.90 or later where the vulnerability is fixed.
Are there any additional resources for CVE-2023-27986?
Yes, you can find additional resources about CVE-2023-27986 at the following URLs: [http://git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-29&id=3c1693d08b0a71d40a77e7b40c0ebc42dca2d2cc](http://git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-29&id=3c1693d08b0a71d40a77e7b40c0ebc42dca2d2cc), [http://www.openwall.com/lists/oss-security/2023/03/09/1](http://www.openwall.com/lists/oss-security/2023/03/09/1), [https://www.gabriel.urdhr.fr/2023/06/08/emacsclient-mail-shell-elisp-injections/](https://www.gabriel.urdhr.fr/2023/06/08/emacsclient-mail-shell-elisp-injections/).