Aller au contenu

Fiche vulnérabilité

CVE-2026-6861 : faille élevée gnu emacs (CVSS 7.1)

Description

A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure.

En bref

Sévérité
Élevée (CVSS 7.1)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
Exploitation active
Non signalée par la CISA
Publication
22 avr. 2026
Dernière mise à jour
17 juin 2026

Produits concernés

  • gnu emacs

Références

Rechercher une autre vulnérabilité dans la base CVE