CVE-2024-30203

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-30203
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-30203.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-30203
Related
Published
2024-03-25T15:15:52Z
Modified
2024-11-07T13:39:27.696385Z
Summary
[none]
Details

In Emacs before 29.3, Gnus treats inline MIME contents as trusted.

References

Affected packages

Debian:11 / emacs

Package

Name
emacs
Purl
pkg:deb/debian/emacs?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:27.1+1-3.1+deb11u3

Affected versions

1:27.*

1:27.1+1-3.1
1:27.1+1-3.1+deb11u1
1:27.1+1-3.1+deb11u2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / emacs

Package

Name
emacs
Purl
pkg:deb/debian/emacs?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:28.2+1-15+deb12u1

Affected versions

1:28.*

1:28.2+1-15

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / emacs

Package

Name
emacs
Purl
pkg:deb/debian/emacs?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:29.3+1-1

Affected versions

1:28.*

1:28.2+1-15
1:28.2+1-16

1:29.*

1:29.1+1-1
1:29.1+1-2
1:29.1+1-3
1:29.1+1-4
1:29.1+1-5~bpo12+1
1:29.1+1-5
1:29.2+1-1
1:29.2+1-2~bpo12+1
1:29.2+1-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:11 / org-mode

Package

Name
org-mode
Purl
pkg:deb/debian/org-mode?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.4.0+dfsg-1+deb11u2

Affected versions

9.*

9.4.0+dfsg-1
9.4.0+dfsg-1+deb11u1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / org-mode

Package

Name
org-mode
Purl
pkg:deb/debian/org-mode?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

9.*

9.5.2+dfsh-5
9.6.6+dfsg-1~exp1
9.6.7+dfsg-1
9.6.8+dfsg-1
9.6.9+dfsg-1
9.6.10+dfsg-1
9.6.21+dfsg-1
9.6.23+dfsg-1
9.6.28+dfsg-1
9.7.5+dfsg-1
9.7.6+dfsg-1
9.7.6+dfsg-2
9.7.11+dfsg-1
9.7.13+dfsg-1
9.7.15+dfsg-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / org-mode

Package

Name
org-mode
Purl
pkg:deb/debian/org-mode?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.6.23+dfsg-1

Affected versions

9.*

9.5.2+dfsh-5
9.6.6+dfsg-1~exp1
9.6.7+dfsg-1
9.6.8+dfsg-1
9.6.9+dfsg-1
9.6.10+dfsg-1
9.6.21+dfsg-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}