Bug#1088690: emacs: CVE-2024-53920 flymake/flycheck

2025-02-05 Thread Sean Whitton
Hello, On Wed 05 Feb 2025 at 07:22pm +07, Max Nikulin wrote: > On 25/01/2025 19:30, Sean Whitton wrote: >> We want to fix this for trixie. I hope that Emacs 30.1 comes out before >> our freeze, then we will just upload that. > > Emacs-29 in trixie as a stable release certainly would be disappoin

Bug#1088690: emacs: CVE-2024-53920 flymake/flycheck

2025-02-05 Thread Max Nikulin
On 25/01/2025 19:30, Sean Whitton wrote: We want to fix this for trixie. I hope that Emacs 30.1 comes out before our freeze, then we will just upload that. Emacs-29 in trixie as a stable release certainly would be disappointing. My primary concern are Emacs-28 and Emacs-27 in current stable

Bug#1088690: emacs: CVE-2024-53920 flymake/flycheck

2025-01-25 Thread Sean Whitton
Hello, We want to fix this for trixie. I hope that Emacs 30.1 comes out before our freeze, then we will just upload that. It would be good to avoid a lot of backporting work (on anyone's parts) if we will then just throw it away and ship Emacs 30.1 with trixie. -- Sean Whitton signature.asc

Bug#1088690: emacs: CVE-2024-53920 flymake/flycheck

2025-01-25 Thread Max Nikulin
On 23/01/2025 21:42, Max Nikulin wrote: I have not tried to look closely at these patches. Perhaps the code has been changed due to Richard Stallman to emacs-devel. Please rename trusted-content ... to trusted-code. Tue, 31 Dec 2024 23:10:37 -0500. I have noticed some minor patches related to

Bug#1088690: emacs: CVE-2024-53920 flymake/flycheck

2025-01-23 Thread Max Nikulin
On Fri, 29 Nov 2024 17:20:00 +0100 Moritz Mühlenhoff wrote: The following vulnerability was published for emacs. This is no fix and this is a long-standing issue, so mostly filing a bug for transparency for now: CVE-2024-53920[0]: [...] https://eshelyaron.com/posts/2024-11-27-emacs-aritrary-c