An emacs24 security update has been released for Debian GNU/Linux 8 and 9 Extended LTS to address a missing input sanitizing resulting in the execution of arbitrary shell commands.
ELA-861-1 emacs24 security update
Package : emacs24
ELA-861-1 emacs24 security update
Version : 24.4+1-5+deb8u2 (jessie), 24.5+1-11+deb9u2 (stretch)
Related CVEs :
CVE-2022-48339
CVE-2023-28617
Xi Lu discovered that missing input sanitizing in Emacs could result in the
execution of arbitrary shell commands.