Gentoo Linux Security Advisory GLSA 200902-06 – Two vulnerabilities were found in GNU Emacs, possibly leading to user-assisted execution of arbitrary code. One also affects edit-utils in XEmacs. Morten Welinder reports about GNU Emacs and edit-utils in XEmacs: By shipping a .flc accompanying a source file (.c for example) and setting font-lock-support-mode to fast-lock-mode in the source file through local variables, any Lisp code in the .flc file is executed without warning (CVE-2008-2142). Versions less than 22.2-r3 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/75122/glsa-200902-06.txt
Source: https://packetstormsecurity.com/files/75122/Gentoo-Linux-Security-Advisory-200902-6.html

