Vulnerabilities (CVE)

Filtered by vendor Gnu Subscribe
Filtered by product Xemacs
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0191 2 Andynorman, Gnu 2 Gnuserv, Xemacs 2024-02-14 10.0 HIGH N/A
gnuserv before 3.12, as shipped with XEmacs, does not properly check the specified length of an X Windows MIT-MAGIC-COOKIE cookie, which allows remote attackers to execute arbitrary commands via a buffer overflow, or brute force authentication by using a short cookie length.
CVE-2008-2142 1 Gnu 2 Emacs, Xemacs 2023-12-10 6.8 MEDIUM N/A
Emacs 21 and XEmacs automatically load and execute .flc (fast lock) files that are associated with other files that are edited within Emacs, which allows user-assisted attackers to execute arbitrary code.
CVE-2005-0100 1 Gnu 2 Emacs, Xemacs 2023-12-10 7.5 HIGH N/A
Format string vulnerability in the movemail utility in (1) Emacs 20.x, 21.3, and possibly other versions, and (2) XEmacs 21.4 and earlier, allows remote malicious POP3 servers to execute arbitrary code via crafted packets.